CVE-2018-10328

HIGH

Momentum Axel 720P <5.1.8 - Info Disclosure

Title source: llm
STIX 2.1

Description

Momentum Axel 720P 5.1.8 devices have a hardcoded password of streaming for the appagent account, which allows remote attackers to view the RTSP video stream.

References (1)

Core 1
Core References

Scores

CVSS v3 7.4
EPSS 0.0056
EPSS Percentile 42.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Details

CWE
CWE-798
Status published
Products (1)
momentum/momentum_axel_720p_firmware 5.1.8
Published Apr 24, 2018
Tracked Since Feb 18, 2026