An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers to conduct stack-based buffer overflow attacks via the IPv4Address field.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://sintonen.fi/advisories/foscam-ip-camera-multiple-vulnerabilities.txt | third party advisory exploit |