Vulnerability Details CVE-2018-12672
The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B) does not perform proper validation on user-supplied input and is vulnerable to cross-site scripting attacks. If proper authorization was implemented, this vulnerability could be leveraged to perform actions on behalf of another user or the administrator.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.5%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2018-12672
-
cpe:2.3:h:sv3c:sv-b01poe-1080p-l:-
-
cpe:2.3:h:sv3c:sv-b11vpoe-1080p-l:-
-
cpe:2.3:h:sv3c:sv-d02poe-1080p-l:-
-
cpe:2.3:o:sv3c:h.264_poe_ip_camera_firmware:v2.3.4.2103-s50-ntd-b20170508b