Vulnerability Description
SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices allow OS Command Injection.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sv3C | H.264 Poe Ip Camera Firmware | v2.3.4.2103-s50-ntd-b20170508b |
| Sv3C | Sv-B01Poe-1080P-L | - |
| Sv3C | Sv-B11Vpoe-1080P-L | - |
| Sv3C | Sv-D02Poe-1080P-L | - |
Related Weaknesses (CWE)
References
- https://www.bishopfox.com/news/2018/10/sv3c-l-series-hd-camera-multiple-vulnerabExploitThird Party Advisory
- https://www.bishopfox.com/news/2018/10/sv3c-l-series-hd-camera-multiple-vulnerabExploitThird Party Advisory
FAQ
What is CVE-2018-12670?
CVE-2018-12670 is a vulnerability with a CVSS score of 9.8 (CRITICAL). SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices allow OS Command Injection.
How severe is CVE-2018-12670?
CVE-2018-12670 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-12670?
Check the references section above for vendor advisories and patch information. Affected products include: Sv3C H.264 Poe Ip Camera Firmware, Sv3C Sv-B01Poe-1080P-L, Sv3C Sv-B11Vpoe-1080P-L, Sv3C Sv-D02Poe-1080P-L.