HIGH · 10.0

CVE-2010-4232

The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a...

Vulnerability Description

The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a // (slash slash) at the beginning of a URI, as demonstrated by the //system.html URI.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CamtronCmnc-200 Firmware1.102a-008
CamtronCmnc-200All versions
TecvozCmnc-200 Firmware1.102a-008
TecvozCmnc-200All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-4232?

CVE-2010-4232 is a vulnerability with a CVSS score of 10.0 (HIGH). The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a...

How severe is CVE-2010-4232?

CVE-2010-4232 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-4232?

Check the references section above for vendor advisories and patch information. Affected products include: Camtron Cmnc-200 Firmware, Camtron Cmnc-200, Tecvoz Cmnc-200 Firmware, Tecvoz Cmnc-200.