cve/2019/CVE-2019-13336.md
2024-06-18 02:51:15 +02:00

999 B

CVE-2019-13336

Description

The dbell Wi-Fi Smart Video Doorbell DB01-S Gen 1 allows remote attackers to launch commands with no authentication verification via TCP port 81, because the loginuse and loginpass parameters to openlock.cgi can have arbitrary values. NOTE: the vendor's position is that this product reached end of life in 2016.

POC

Reference

Github

No PoCs found on GitHub currently.