Vulnerability Description
The analytics page on Cisco Video Surveillance 4000 IP cameras has hardcoded credentials, which allows remote attackers to watch the video feed by leveraging knowledge of the password, aka Bug IDs CSCuj70402 and CSCuj70419.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Video Surveillance 4000 Ip Camera | - |
| Cisco | Video Surveillance 4300E Ip Camera | - |
| Cisco | Video Surveillance 4500E Ip Camera | - |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5535Vendor Advisory
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5535Vendor Advisory
FAQ
What is CVE-2013-5535?
CVE-2013-5535 is a vulnerability with a CVSS score of 6.4 (MEDIUM). The analytics page on Cisco Video Surveillance 4000 IP cameras has hardcoded credentials, which allows remote attackers to watch the video feed by leveraging knowledge of the password, aka Bug IDs CSC...
How severe is CVE-2013-5535?
CVE-2013-5535 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-5535?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Video Surveillance 4000 Ip Camera, Cisco Video Surveillance 4300E Ip Camera, Cisco Video Surveillance 4500E Ip Camera.