Description
In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, by sending a specially crafted request an authenticated user can view password in clear text and results in privilege escalation.
Published: 2018-07-03
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-19493 In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, by sending a specially crafted request an authenticated user can view password in clear text and results in privilege escalation.
History

No history.

Subscriptions

Schneider-electric Ibp1110-1er Ibp1110-1er Firmware Ibp219-1er Ibp219-1er Firmware Ibp319-1er Ibp319-1er Firmware Ibp519-1er Ibp519-1er Firmware Ibps110-1er Ibps110-1er Firmware Imp1110-1 Imp1110-1 Firmware Imp1110-1e Imp1110-1e Firmware Imp1110-1er Imp1110-1er Firmware Imp219-1 Imp219-1 Firmware Imp219-1e Imp219-1e Firmware Imp219-1er Imp219-1er Firmware Imp319-1 Imp319-1 Firmware Imp319-1e Imp319-1e Firmware Imp319-1er Imp319-1er Firmware Imp519-1 Imp519-1 Firmware Imp519-1e Imp519-1e Firmware Imp519-1er Imp519-1er Firmware Imps110-1 Imps110-1 Firmware Imps110-1e Imps110-1e Firmware Imps110-1er Imps110-1er Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-09-16T19:56:23.773Z

Reserved: 2018-03-08T00:00:00.000Z

Link: CVE-2018-7781

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-03T14:29:01.383

Modified: 2024-11-21T04:12:43.390

Link: CVE-2018-7781

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses