CVE-2019-10710

Insecure permissions in the Web management portal on all IP cameras based on Hisilicon Hi3510 firmware allow authenticated attackers to receive a network's cleartext WiFi credentials via a specific HTTP request. This affects certain devices labeled as HI3510, HI3518, LOOSAFE, LEVCOECAM, Sywstoda, BESDER, WUSONGLUSAN, GADINAN, Unitoptek, ESCAM, etc.
References
Link Resource
https://dojo.bullguard.com/dojo-by-bullguard/blog/cam-hi-risk/ Mitigation Third Party Advisory
Configurations

Configuration 1


Information

Published : 2019-04-23 08:32

Updated : 2020-08-24 05:37


NVD link : CVE-2019-10710

Mitre link : CVE-2019-10710

Products Affected
CWE