CVE-2018-10734

CRITICAL

Kongtop D303 Firmware - Information Disclosure

Title source: rule
STIX 2.1

Description

KONGTOP DVR devices A303, A403, D303, D305, and D403 contain a backdoor that prints the login password via a Print_Password function call in certain circumstances.

Scores

CVSS v3 9.8
EPSS 0.0039
EPSS Percentile 59.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-200
Status published
Products (5)
kongtop/a303_firmware
kongtop/a403_firmware
kongtop/d303_firmware
kongtop/d305_firmware
kongtop/d403_firmware
Published May 08, 2018
Tracked Since Feb 18, 2026