Vulnerability Details CVE-2013-2580
Unrestricted file upload vulnerability in cgi-bin/uploadfile in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6, allows remote attackers to upload arbitrary files, then accessing it via a direct request to the file in the mnt/mtd directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.078
EPSS Ranking 91.6%
CVSS Severity
CVSS v2 Score 7.1
Products affected by CVE-2013-2580
-
cpe:2.3:h:tp-link:tl-sc3130:-
-
cpe:2.3:h:tp-link:tl-sc3130g:-
-
cpe:2.3:h:tp-link:tl-sc3171:-
-
cpe:2.3:h:tp-link:tl-sc3171g:-
-
cpe:2.3:o:tp-link:lm_firmware:1.6.18p12_sign5