CVE-2018-17240
HIGHNetwave IP Camera - Info Disclosure
Title source: llmDescription
There is a memory dump vulnerability on Netwave IP camera devices at //proc/kcore that allows an unauthenticated attacker to exfiltrate sensitive information from the network configuration (e.g., username and password).
Exploits (3)
Scores
CVSS v3
7.5
EPSS
0.4249
EPSS Percentile
97.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-401
Status
published
Affected Products (2)
netwavepr/indoor_ip_camera_firmware
netwavepr/outdoor_ip_camera_firmware
Timeline
Published
Jun 10, 2022
Tracked Since
Feb 18, 2026