Vulnerability Description
ZModo ZP-NE14-S and ZP-IBH-13W devices do not enforce a WPA2 configuration setting, which allows remote attackers to trigger association with an arbitrary access point by using a recognized SSID value.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zmodo | Zp-Ibh-13W | - |
| Zmodo | Zp-Ne-14-S | - |
Related Weaknesses (CWE)
References
- http://www.kb.cert.org/vuls/id/301735Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/92449
- http://www.kb.cert.org/vuls/id/301735Third Party AdvisoryUS Government Resource
- http://www.securityfocus.com/bid/92449
FAQ
What is CVE-2016-5650?
CVE-2016-5650 is a vulnerability with a CVSS score of 7.5 (HIGH). ZModo ZP-NE14-S and ZP-IBH-13W devices do not enforce a WPA2 configuration setting, which allows remote attackers to trigger association with an arbitrary access point by using a recognized SSID value...
How severe is CVE-2016-5650?
CVE-2016-5650 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-5650?
Check the references section above for vendor advisories and patch information. Affected products include: Zmodo Zp-Ibh-13W, Zmodo Zp-Ne-14-S.