CVE-2013-2580 - CERT CVE
ID CVE-2013-2580
Sažetak Unrestricted file upload vulnerability in cgi-bin/uploadfile in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6, allows remote attackers to upload arbitrary files, then accessing it via a direct request to the file in the mnt/mtd directory.
Reference
CVSS
Base: 7.1
Impact: 6.9
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE NONE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:C/A:N
Zadnje važnije ažuriranje 15-10-2013 - 13:23
Objavljeno 11-10-2013 - 21:55