Insecure permissions in the Web management portal on all IP cameras based on Hisilicon Hi3510 firmware allow authenticated attackers to receive a network's cleartext WiFi credentials via a specific HTTP request. This affects certain devices labeled as HI3510, HI3518, LOOSAFE, LEVCOECAM, Sywstoda, BESDER, WUSONGLUSAN, GADINAN, Unitoptek, ESCAM, etc.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-04-23T19:06:47
Updated: 2024-08-04T22:32:01.573Z
Reserved: 2019-04-02T00:00:00
Link: CVE-2019-10710
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-04-23T20:32:43.023
Modified: 2024-11-21T04:19:47.023
Link: CVE-2019-10710
Redhat
No data.