BDU:2023-06652High
BDU
BDU
Data Bank of Information Security Threats
BDU ФСТЭК is the authoritative Russian source of vulnerability information, covering both international CVEs relevant to domestic software and unique Russian-disclosed issues. Entries contain severity, affected product lists (in Russian), and mitigation recommendations.
Region
RU
Updates
1 ч
License
Открытые данные
Russian federal catalog of vulnerabilities and threats maintained by FSTEC. Required for compliance with Russian information security regulations (Приказ №17, Приказ №21).
https://bdu.fstec.ru →Share link
Anyone with the link can open this vulnerability.
Уязвимость микропрограммного обеспечения устройств просмотра видео в реальном времени Fujitsu серии IP связана с использованием жестко зако…
CVSS
7.5
High
EPSS
0.00
p0
Published
2023-01-01
Updated
2023-01-01
Description
Уязвимость микропрограммного обеспечения устройств просмотра видео в реальном времени Fujitsu серии IP связана с использованием жестко закодированных учетных данных. Эксплуатация уязвимости может позволить нарушителю, действующему удаленно, инициализировать или перезагрузить устройство, а также прекратить передачу видео
Tags · CWE
Pre-auth
Affected products
Fujitsu limited Ip-90Fujitsu limited Ip-900dFujitsu limited Ip-900eFujitsu limited Ip-900iidFujitsu limited Ip-920dFujitsu limited Ip-920eFujitsu limited Ip-9610Fujitsu limited Ip-he900dFujitsu limited Ip-he900eFujitsu limited Ip-he950dFujitsu limited Ip-he950e
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
2023-01-01
Published
2023-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.000 · p0
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected software
| Product | Vendor | Status |
|---|---|---|
| ip-90 | fujitsu limited | Tracked |
| ip-900d | fujitsu limited | Tracked |
| ip-900e | fujitsu limited | Tracked |
| ip-900iid | fujitsu limited | Tracked |
| ip-920d | fujitsu limited | Tracked |
| ip-920e | fujitsu limited | Tracked |
| ip-9610 | fujitsu limited | Tracked |
| ip-he900d | fujitsu limited | Tracked |
| ip-he900e | fujitsu limited | Tracked |
| ip-he950d | fujitsu limited | Tracked |
| ip-he950e | fujitsu limited | Tracked |
Source databases
BDU
BDU
Data Bank of Information Security Threats
BDU ФСТЭК is the authoritative Russian source of vulnerability information, covering both international CVEs relevant to domestic software and unique Russian-disclosed issues. Entries contain severity, affected product lists (in Russian), and mitigation recommendations.
Region
RU
Updates
1 ч
License
Открытые данные
Russian federal catalog of vulnerabilities and threats maintained by FSTEC. Required for compliance with Russian information security regulations (Приказ №17, Приказ №21).
https://bdu.fstec.ru →Related vulnerabilities