Vulnerabilities > CVE-2013-2574 - Incorrect Authorization vulnerability in Foscam Fi8620 Firmware

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
foscam
CWE-863
exploit available

Summary

An Access vulnerability exists in FOSCAM IP Camera FI8620 due to insufficient access restrictions in the /tmpfs/ and /log/ directories, which could let a malicious user obtain sensitive information.

Vulnerable Configurations

Part Description Count
OS
Foscam
1
Hardware
Foscam
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionFOSCAM IP-Cameras Improper Access Restrictions. CVE-2013-2574. Webapps exploit for hardware platform
idEDB-ID:27076
last seen2016-02-03
modified2013-07-24
published2013-07-24
reporterCore Security
sourcehttps://www.exploit-db.com/download/27076/
titleFOSCAM IP-Cameras Improper Access Restrictions

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/122521/CORE-2013-0613.txt
idPACKETSTORM:122521
last seen2016-12-05
published2013-07-23
reporterCore Security Technologies
sourcehttps://packetstormsecurity.com/files/122521/FOSCAM-IP-Cameras-Improper-Access-Restrictions.html
titleFOSCAM IP-Cameras Improper Access Restrictions