CVE-2017-14262
HIGHSamsung SRN-1670D, SRN-1000, SRN-472S, SRN-470D Firmware - Unauthenticated Admin Password Hash Exposure
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-14262. PoCs published by zzz66686.
AI-analyzed exploit summary This PoC demonstrates an authentication bypass vulnerability in Samsung NVR devices by retrieving the MD5 hash of the admin password via an unauthenticated API call and then using it to log in. The exploit leverages weak access controls to expose sensitive credentials.
Description
On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via certain szUserName JSON data to cgi-bin/main-cgi, and login to the device with that hash in the szUserPasswd parameter.
Exploits (1)
This PoC demonstrates an authentication bypass vulnerability in Samsung NVR devices by retrieving the MD5 hash of the admin password via an unauthenticated API call and then using it to log in. The exploit leverages weak access controls to expose sensitive credentials.
References (1)
Scores
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H