Description
D-Link DCS series Wi-Fi cameras expose sensitive information regarding the device configuration. The affected devices include many of DCS series, such as: DCS-936L, DCS-942L, DCS-8000LH, DCS-942LB1, DCS-5222L, DCS-825L, DCS-2630L, DCS-820L, DCS-855L, DCS-2121, DCS-5222LB1, DCS-5020L, and many more. There are many affected firmware versions starting from 1.00 and above. The configuration file can be accessed remotely through: <Camera-IP>/common/info.cgi, with no authentication. The configuration file include the following fields: model, product, brand, version, build, hw_version, nipca version, device name, location, MAC address, IP address, gateway IP address, wireless status, input/output settings, speaker, and sensor settings.
Published: 2018-12-20
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-10169 D-Link DCS series Wi-Fi cameras expose sensitive information regarding the device configuration. The affected devices include many of DCS series, such as: DCS-936L, DCS-942L, DCS-8000LH, DCS-942LB1, DCS-5222L, DCS-825L, DCS-2630L, DCS-820L, DCS-855L, DCS-2121, DCS-5222LB1, DCS-5020L, and many more. There are many affected firmware versions starting from 1.00 and above. The configuration file can be accessed remotely through: <Camera-IP>/common/info.cgi, with no authentication. The configuration file include the following fields: model, product, brand, version, build, hw_version, nipca version, device name, location, MAC address, IP address, gateway IP address, wireless status, input/output settings, speaker, and sensor settings.
History

No history.

Subscriptions

D-link Dcs-2102 Firmware Dcs-2121 Firmware Dcs-2630l Firmware Dcs-5222l Firmware Dcs-5222lb1 Firmware Dcs-8000lh Firmware Dcs-8100lh Firmware Dcs-820l Firmware Dcs-825l Firmware Dcs-855l Firmware Dcs-936l Firmware Dcs-942lb1 Firmware
Dlink Dcs-2102 Dcs-2121 Dcs-2630l Dcs-5020l Dcs-5020l Firmware Dcs-5030l Dcs-5030l Firmware Dcs-5222l Dcs-5222lb1 Dcs-8000lh Dcs-8100lh Dcs-820l Dcs-825l Dcs-855l Dcs-930l Dcs-930l Firmware Dcs-932l Dcs-932l Firmware Dcs-933l Dcs-933l Firmware Dcs-936l Dcs-942l Dcs-942l Firmware Dcs-942lb1
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T11:08:21.874Z

Reserved: 2018-10-17T00:00:00.000Z

Link: CVE-2018-18441

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-12-20T23:29:00.707

Modified: 2024-11-21T03:55:56.640

Link: CVE-2018-18441

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses