CVE-2023-30351

Severity
7.5HIGH
EPSS
0.1%
top 82.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 10

Description

Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for root which is stored using weak encryption. This vulnerability allows attackers to connect to the TELNET service (or UART) by using the exposed credentials.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDtenda/cp3_firmware11.10.00.2211041355

🔴Vulnerability Details

2
CVEList
CVE-2023-30351: Shenzen Tenda Technology IP Camera CP3 V112023-05-10
GHSA
GHSA-63x5-2522-m5f9: Shenzen Tenda Technology IP Camera CP3 V112023-05-10
CVE-2023-30351 (HIGH CVSS 7.5) | Shenzen Tenda Technology IP Camera | cvebase.io