Vulnerability Description
Foscam Video Management System 1.1.4.9 contains a denial of service vulnerability in the username input field that allows attackers to crash the application. Attackers can overwrite the username with a 520-byte buffer of repeated 'A' characters to trigger an application crash during device login.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://www.exploit-db.com/exploits/47671
- https://www.foscam.es/
- https://www.vulncheck.com/advisories/foscam-video-management-system-username-den
FAQ
What is CVE-2019-25353?
CVE-2019-25353 is a vulnerability with a CVSS score of 7.5 (HIGH). Foscam Video Management System 1.1.4.9 contains a denial of service vulnerability in the username input field that allows attackers to crash the application. Attackers can overwrite the username with ...
How severe is CVE-2019-25353?
CVE-2019-25353 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-25353?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.