An Information Disclosure vulnerability exists via a GET request in Vivotek PT7135 IP Camera 0300a and 0400a due to wireless keys and 3rd party credentials stored in clear text.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/59572 | third party advisory vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/83943 | third party advisory vdb entry |
http://www.exploit-db.com/exploits/25139 | third party advisory vdb entry exploit |
https://www.coresecurity.com/advisories/vivotek-ip-cameras-multiple-vulnerabilities | third party advisory exploit |
https://packetstormsecurity.com/files/cve/CVE-2013-1594 | third party advisory vdb entry |
https://github.com/offensive-security/exploitdb/blob/master/exploits/hardware/webapps/25139.txt | third party advisory exploit |