V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2013-2572
CVE
HighConfirmedExploit available

A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 due to default hard-…

CVSS
7.5
High
EPSS
0.49
p97
Published
2013-01-01
Updated
2013-01-01
Description

A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 due to default hard-coded credentials for the administrative Web interface, which could let a malicious user obtain unauthorized access to CGI files.

Tags · CWE
Pre-auth
CWE-798
CAPEC-70
CAPEC-191
Affected products
Tl-sc_3130_firmwareTl-sc_3130g_firmwareTl-sc_3171g_firmwareTl-sc_4171g_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Timeline
2013-01-01
Published
2013-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: N
None (N)
Availability Impact
A: N
None (N)
Exploit indicators
EPSS
0.493 · p97
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-70 · CWE-798
└ via CAPEC-191 · CWE-798
Known exploits — Сканер-ВС
25812
exploitdb · https://www.exploit-db.com/exploits/25812
Enterprise
Affected software
ProductVendorStatus
tl-sc_3130_firmware*Tracked
tl-sc_3130g_firmware*Tracked
tl-sc_3171g_firmware*Tracked
tl-sc_4171g_firmware*Tracked
Source databases
CVE