An Elevated Privileges issue exists in D-Link DCS-5000L v1.05 and DCS-932L v2.17 and older. The use of the digest-authentication for the devices command interface may allow further attack vectors that may compromise the cameras configuration and allow malicious users on the LAN to access the device. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
2021-09-24T20:15:07.437
2024-11-21T06:26:20.360
Modified
CVSSv3.1: 8.0 (HIGH)
AV:A/AC:L/Au:S/C:P/I:P/A:P
5.1
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? | 
|---|---|---|---|---|
| Operating System | dlink | dcs-932l_firmware | ≤ 2.17 | Yes | 
| Hardware | dlink | dcs-932l | - | No | 
| Operating System | dlink | dcs-5000l_firmware | 1.05 | Yes | 
| Hardware | dlink | dcs-5000l | - | No |