Vulnerabilities
Vulnerable Software
Vivotek:  >> Pt7135 Firmware  Security Vulnerabilities
A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET request, which could let a malicious user obtain user credentials.
CVSS Score
6.5
EPSS Score
0.109
Published
2020-01-24
A Command Injection vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via the system.ntp parameter to the farseer.out binary file, which cold let a malicious user execute arbitrary code.
CVSS Score
8.8
EPSS Score
0.322
Published
2020-01-24
A Buffer Overflow vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via a specially crafted packet in the Authorization header field sent to the RTSP service, which could let a remote malicious user execute arbitrary code or cause a Denial of Service.
CVSS Score
9.8
EPSS Score
0.039
Published
2020-01-24
An Authentication Bypass Vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via specially crafted RTSP packets to TCP port 554.
CVSS Score
5.3
EPSS Score
0.219
Published
2020-01-24
An Information Disclosure vulnerability exists via a GET request in Vivotek PT7135 IP Camera 0300a and 0400a due to wireless keys and 3rd party credentials stored in clear text.
CVSS Score
7.5
EPSS Score
0.224
Published
2020-01-24


Contact Us

Shodan ® - All rights reserved