CVE-2013-7204

Conceptronic CIPCAMPTIWL Camera 1.0-21.37.2.49 - CSRF

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2013-7204. PoCs published by Felipe Molina.

AI-analyzed exploit summary This is a detailed writeup describing a CSRF vulnerability in Conceptronic camera CIPCAMPTIWL firmware 21.37.2.49. The vulnerability allows an attacker to create administrator users via a crafted GET request to /set_users.cgi if the victim is logged in and visits a malicious link.

Description

Cross-site request forgery (CSRF) vulnerability in set_users.cgi in Conceptronic CIPCAMPTIWL Camera 1.0 with firmware 21.37.2.49 allows remote attackers to hijack the authentication of administrators for requests that add arbitrary users.

Exploits (1)

exploitdb WRITEUP
by Felipe Molina · textwebappshardware
https://www.exploit-db.com/exploits/30914

This is a detailed writeup describing a CSRF vulnerability in Conceptronic camera CIPCAMPTIWL firmware 21.37.2.49. The vulnerability allows an attacker to create administrator users via a crafted GET request to /set_users.cgi if the victim is logged in and visits a malicious link.

Classification
Writeup 100%
Attack Type
Other
Complexity
Trivial
Reliability
Reliable
Target: Conceptronic camera CIPCAMPTIWL firmware 21.37.2.49
Auth required
Prerequisites: Victim must be logged into the camera web interface · Victim must visit a malicious link
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/101930
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/30914
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/530717/100/0/threaded

Scores

EPSS 0.1060
EPSS Percentile 95.2%

Details

CWE
CWE-352
Status published
Products (2)
conceptronic/cipcamptiwl 1.0
conceptronic/cipcamptiwl_1.0_firmware 21.37.2.49
Published Jan 17, 2014
Tracked Since Feb 18, 2026