Exploitation Summary
EIP tracks 1 public exploit for CVE-2013-2581. PoCs published by Core Security.
AI-analyzed exploit summary This advisory details multiple vulnerabilities in TP-Link TL-SC3171 IP cameras, including OS command injection, hard-coded credentials, and unauthenticated remote file uploads/firmware upgrades. It provides technical descriptions, proof-of-concept code snippets, and attack paths.
Description
cgi-bin/firmwareupgrade in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to modify the firmware revision via a "preset" action.
Exploits (1)
This advisory details multiple vulnerabilities in TP-Link TL-SC3171 IP cameras, including OS command injection, hard-coded credentials, and unauthenticated remote file uploads/firmware upgrades. It provides technical descriptions, proof-of-concept code snippets, and attack paths.