CVE-2010-4231

NUCLEI

Camtron and TecVoz CMNC-200 Firmware 1.102A-008 - Path Traversal via URI

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2010-4231. PoCs published by Trustwave's SpiderLabs, K3ysTr0K3R. A Nuclei detection template is also available.

AI-analyzed exploit summary This writeup describes a directory traversal vulnerability in the CMNC-200 IP Camera's web server, allowing unauthenticated access to sensitive files like /etc/passwd and /etc/shadow. The exploit is trivial, requiring only a crafted HTTP GET request.

Description

Directory traversal vulnerability in the web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.

Exploits (2)

exploitdb WRITEUP VERIFIED
by Trustwave's SpiderLabs · textremotehardware
https://www.exploit-db.com/exploits/15505

This writeup describes a directory traversal vulnerability in the CMNC-200 IP Camera's web server, allowing unauthenticated access to sensitive files like /etc/passwd and /etc/shadow. The exploit is trivial, requiring only a crafted HTTP GET request.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: CMNC-200 IP Camera (web server)
No auth needed
Prerequisites: Network access to the vulnerable device
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC 3 stars
by K3ysTr0K3R · poc
https://github.com/K3ysTr0K3R/CVE-2010-4231-EXPLOIT

The repository contains a functional bash script that exploits a directory traversal vulnerability (CVE-2010-4231) in Camtron and TecVoz IP cameras. The script attempts to read sensitive files like /etc/passwd and /etc/shadow by sending crafted HTTP requests with directory traversal sequences.

Classification
Working Poc 95%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Camtron CMNC-200 Full HD IP Camera (firmware 1.102A-008), TecVoz CMNC-200 Megapixel IP Camera (firmware 1.102A-008)
No auth needed
Prerequisites: Network access to the vulnerable IP camera
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Nuclei Templates (1)

Camtron CMNC-200 IP Camera - Directory Traversal
HIGHby daffainfo

References (3)

Core 3
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/15505/
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/514753/100/0/threaded

Scores

EPSS 0.2641
EPSS Percentile 96.5%

Details

CWE
CWE-22
Status published
Products (4)
camtron/cmnc-200
camtron/cmnc-200_firmware 1.102a-008
tecvoz/cmnc-200
tecvoz/cmnc-200_firmware 1.102a-008
Published Nov 17, 2010
Tracked Since Feb 18, 2026