Description
An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00. A specially crafted POST can cause a stack-based buffer overflow, resulting in remote code execution. An attacker can send a malicious POST request to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-15724 | An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00. A specially crafted POST can cause a stack-based buffer overflow, resulting in remote code execution. An attacker can send a malicious POST request to trigger this vulnerability. |
References
History
No history.
Subscriptions
Sony
Subscribe
Snc-eb600
Subscribe
Snc-eb600 Firmware
Subscribe
Snc-eb600b
Subscribe
Snc-eb600b Firmware
Subscribe
Snc-eb602r
Subscribe
Snc-eb602r Firmware
Subscribe
Snc-eb630
Subscribe
Snc-eb630 Firmware
Subscribe
Snc-eb630b
Subscribe
Snc-eb630b Firmware
Subscribe
Snc-eb632r
Subscribe
Snc-eb632r Firmware
Subscribe
Snc-em600
Subscribe
Snc-em600 Firmware
Subscribe
Snc-em601
Subscribe
Snc-em601 Firmware
Subscribe
Snc-em602r
Subscribe
Snc-em602r Firmware
Subscribe
Snc-em602rc
Subscribe
Snc-em602rc Firmware
Subscribe
Snc-em630
Subscribe
Snc-em630 Firmware
Subscribe
Snc-em631
Subscribe
Snc-em631 Firmware
Subscribe
Snc-em632r
Subscribe
Snc-em632r Firmware
Subscribe
Snc-em632rc
Subscribe
Snc-em632rc Firmware
Subscribe
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2024-09-16T18:08:43.570Z
Reserved: 2018-01-02T00:00:00.000Z
Link: CVE-2018-3938
No data.
Status : Modified
Published: 2018-08-14T19:29:01.153
Modified: 2024-11-21T04:06:20.540
Link: CVE-2018-3938
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD