cbcvebase.
CVE-2018-7781
published 2018-07-03

CVE-2018-7781: In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, by sending a specially crafted request an…

high8.8CVSS 3.0
AVNACLPRLUINSUCHIHAH
In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, by sending a specially crafted request an authenticated user can view password in clear text and results in privilege escalation.

Affected

21 ranges
VendorProductVersion rangeFixed in
schneider-electricibp1110-1er_firmware< 3.29.693.29.69
schneider-electricibp219-1er_firmware< 3.29.693.29.69
schneider-electricibp319-1er_firmware< 3.29.693.29.69
schneider-electricibp519-1er_firmware< 3.29.693.29.69
schneider-electricibps110-1er_firmware< 3.29.693.29.69
schneider-electricimp1110-1_firmware< 3.29.693.29.69
schneider-electricimp1110-1e_firmware< 3.29.693.29.69
schneider-electricimp1110-1er_firmware< 3.29.693.29.69
schneider-electricimp219-1_firmware< 3.29.693.29.69
schneider-electricimp219-1e_firmware< 3.29.693.29.69
schneider-electricimp219-1er_firmware< 3.29.693.29.69
schneider-electricimp319-1_firmware< 3.29.693.29.69
schneider-electricimp319-1e_firmware< 3.29.693.29.69
schneider-electricimp319-1er_firmware< 3.29.693.29.69
schneider-electricimp519-1_firmware< 3.29.693.29.69
schneider-electricimp519-1e_firmware< 3.29.693.29.69
schneider-electricimp519-1er_firmware< 3.29.693.29.69
schneider-electricimps110-1_firmware< 3.29.693.29.69
schneider-electricimps110-1e_firmware< 3.29.693.29.69
schneider-electricimps110-1er_firmware< 3.29.693.29.69
schneider_electric_sepelco_sarix_professional_v1