CVE-2018-17919 Vulnerability Details

  /     /     /  

CVE-2018-17919 Metadata Quick Info

CVE Published: 10/10/2018 | CVE Updated: 16/09/2024 | CVE Year: 2018
Source: icscert | Vendor: Hangzhou Xiongmai Technology Co., Ltd | Product: XMeye P2P Cloud Server
Status : PUBLISHED

CVE-2018-17919 Description

All versions of Hangzhou Xiongmai Technology Co., Ltd XMeye P2P Cloud Server may allow an attacker to use an undocumented user account "default" with its default password to login to XMeye and access/view video streams.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-912
CWE Name: HIDDEN FUNCTIONALITY CWE-912
Source: Hangzhou Xiongmai Technology Co., Ltd

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).