Foscam C2 Application Firmware vulnerabilities
20 known vulnerabilities affecting foscam/c2_application_firmware.
Total CVEs
20
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH8MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2018-19081P2CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19081 [CRITICAL] CWE-78 CVE-2018-19081: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers to execute arbitrary OS commands via the IPv4Address field.
nvd
CVE-2018-19064P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19064 [CRITICAL] CWE-521 CVE-2018-19064: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ftpuser1 account has a blank password, which cannot be changed.
nvd
CVE-2018-19067P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19067 [CRITICAL] CWE-798 CVE-2018-19067: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. There is a hardcoded Ak47@99 password for the factory~ account.
nvd
CVE-2018-19063P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19063 [CRITICAL] CWE-798 CVE-2018-19063: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The admin account has a blank password.
nvd
CVE-2018-19069P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19069 [CRITICAL] CWE-798 CVE-2018-19069: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The CGIProxy.fcgi?cmd=setTelnetSwitch feature is authorized for the root user with a password of toor.
nvd
CVE-2018-19082P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19082 [CRITICAL] CWE-787 CVE-2018-19082: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers to conduct stack-based buffer overflow attacks via the IPv4Address field.
nvd
CVE-2018-19076P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19076 [CRITICAL] CWE-287 CVE-2018-19076: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The FTP and RTSP services make it easier for attackers to conduct brute-force authentication attacks, because failed-authentication limits apply only
nvd
CVE-2018-19078P3CRITICALCVSS 9.8v2.72.1.322018-11-07
CVE-2018-19078 [CRITICAL] CWE-522 CVE-2018-19078: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The response to an ONVIF media GetStreamUri request contains the administrator username and password.
nvd
CVE-2018-19070P3HIGHCVSS 7.2v2.72.1.322018-11-07
CVE-2018-19070 [HIGH] CWE-78 CVE-2018-19070: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. They allow remote attackers to execute arbitrary OS commands via shell metacharacters in the usrName parameter of a CGIProxy.fcgi addAccount action.
nvd
CVE-2018-19073P3HIGHCVSS 7.2v2.72.1.322018-11-07
CVE-2018-19073 [HIGH] CWE-78 CVE-2018-19073: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. They allow attackers to execute arbitrary OS commands via shell metacharacters in the modelName, by leveraging /mnt/mtd/app/config/ProductConfig.xml write
nvd
CVE-2018-19065P3HIGHCVSS 7.5v2.72.1.322018-11-07
CVE-2018-19065 [HIGH] CWE-798 CVE-2018-19065: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The exported device configuration is encrypted with the hardcoded BpP+2R9*Q password in some cases.
nvd
CVE-2018-19066P3HIGHCVSS 7.5v2.72.1.322018-11-07
CVE-2018-19066 [HIGH] CWE-798 CVE-2018-19066: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The exported device configuration is encrypted with the hardcoded Pxift* password in some cases.
nvd
CVE-2018-19079P3HIGHCVSS 7.5v2.72.1.322018-11-07
CVE-2018-19079 [HIGH] CWE-306 CVE-2018-19079: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SystemReboot method allows unauthenticated reboot.
nvd
CVE-2018-19074P3HIGHCVSS 7.5v2.72.1.322018-11-07
CVE-2018-19074 [HIGH] CVE-2018-19074: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The firewall has no effect except for blocking port 443 and partially blocking port 88.
nvd
CVE-2018-19071P3HIGHCVSS 7.8v2.72.1.322018-11-07
CVE-2018-19071 [HIGH] CWE-732 CVE-2018-19071: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. /mnt/mtd/boot.sh has 0777 permissions, allowing local users to control the commands executed at system start-up.
nvd
CVE-2018-19077P4HIGHCVSS 7.5v2.72.1.322018-11-07
CVE-2018-19077 [HIGH] CWE-125 CVE-2018-19077: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. RtspServer allows remote attackers to cause a denial of service (daemon hang or restart) via a negative integer in the RTSP Content-Length header.
nvd
CVE-2018-19075P4MEDIUMCVSS 5.3v2.72.1.322018-11-07
CVE-2018-19075 [MEDIUM] CWE-200 CVE-2018-19075: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The firewall feature makes it easier for remote attackers to ascertain credentials and firewall rules because invalid credentials lead to error -2, whe
nvd
CVE-2018-19080P4MEDIUMCVSS 6.1v2.72.1.322018-11-07
CVE-2018-19080 [MEDIUM] CWE-79 CVE-2018-19080: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetHostname method allows unauthenticated persistent XSS.
nvd
CVE-2018-19068P4MEDIUMCVSS 4.9v2.72.1.322018-11-07
CVE-2018-19068 [MEDIUM] CVE-2018-19068: An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application F
An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The CGIProxy.fcgi?cmd=setTelnetSwitch feature is authorized for hidden factory credentials.
nvd
CVE-2018-19072P4MEDIUMCVSS 5.5v2.72.1.322018-11-07
CVE-2018-19072 [MEDIUM] CWE-732 CVE-2018-19072: An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. /mnt/mtd/app has 0777 permissions, allowing local users to replace an archive file (within that directory) to control what is extracted to RAM at boot
nvd