Vulnerabilities > Zavio > F3105 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2020-01-29 CVE-2013-2569 Improper Authentication vulnerability in Zavio F3105 Firmware and F312A Firmware
A Security Bypass vulnerability exists in Zavio IP Cameras through 1.6.3 because the RTSP protocol authentication is disabled by default, which could let a malicious user obtain unauthorized access to the live video stream.
network
low complexity
zavio CWE-287
7.5
2020-01-29 CVE-2013-2567 Use of Hard-coded Credentials vulnerability in Zavio F3105 Firmware and F312A Firmware
An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through 1.6.03 due to a hardcoded admin account found in boa.conf, which lets a remote malicious user obtain sensitive information.
network
low complexity
zavio CWE-798
7.5