Beveiligingsadvies

CVE-2019-20466

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-04-02 15:37:05
Laatst bijgewerkt 2024-08-05 02:39:09
Toegewezen door mitre
CVSS-score 7.8
Status PUBLISHED

Beschrijving

An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a weakly hashed root password. By taking this hash and cracking it, the attacker can obtain root rights on the device.