CVE-2013-1594
HIGHVivotek PT7135 Firmware 0300a/0400a - Cleartext Credential Storage Exposes Sensitive Information
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-1594. PoCs published by Core Security.
AI-analyzed exploit summary The provided code includes multiple proof-of-concept exploits for Vivotek IP cameras, covering vulnerabilities such as information leaks, buffer overflows, RTSP authentication bypass, and command injection. The exploits are written in Python and target specific firmware versions of Vivotek PT7135 IP cameras.
Description
An Information Disclosure vulnerability exists via a GET request in Vivotek PT7135 IP Camera 0300a and 0400a due to wireless keys and 3rd party credentials stored in clear text.
Exploits (1)
The provided code includes multiple proof-of-concept exploits for Vivotek IP cameras, covering vulnerabilities such as information leaks, buffer overflows, RTSP authentication bypass, and command injection. The exploits are written in Python and target specific firmware versions of Vivotek PT7135 IP cameras.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N