CVE-2019-7315

Genie Access WIP3BVAF WISH IP 3MP IR Auto Focus Bullet Camera devices through 3.x are vulnerable to directory traversal via the web interface, as demonstrated by reading /etc/shadow. NOTE: this product is discontinued, and its final firmware version has this vulnerability (4.x versions exist only for other Genie Access products).
Configurations

Configuration 1


Information

Published : 2019-06-17 07:15

Updated : 2019-06-20 02:00


NVD link : CVE-2019-7315

Mitre link : CVE-2019-7315

CWE