An Elevated Privileges issue exists in D-Link DCS-5000L v1.05 and DCS-932L v2.17 and older. The use of the digest-authentication for the devices command interface may allow further attack vectors that may compromise the cameras configuration and allow malicious users on the LAN to access the device. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
2021-09-24T20:15:07.437
2024-11-21T06:26:20.360
Modified
CVSSv3.1: 8.0 (HIGH)
AV:A/AC:L/Au:S/C:P/I:P/A:P
5.1
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dcs-932l_firmware | ≤ 2.17 | Yes |
Hardware | dlink | dcs-932l | - | No |
Operating System | dlink | dcs-5000l_firmware | 1.05 | Yes |
Hardware | dlink | dcs-5000l | - | No |