Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-25136. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit demonstrates unauthenticated access to live RTSP video streams and image endpoints on FLIR Brickstream 3D+ sensors. It fetches images via HTTP and compiles them into a video using ffmpeg.
Description
FLIR Brickstream 3D+ 2.1.742.1842 contains an unauthenticated vulnerability that allows remote attackers to access live video streams without credentials. Attackers can retrieve video stream images by directly accessing multiple image endpoints like middleImage.jpg, rightimage.jpg, and leftimage.jpg.
Exploits (1)
This exploit demonstrates unauthenticated access to live RTSP video streams and image endpoints on FLIR Brickstream 3D+ sensors. It fetches images via HTTP and compiles them into a video using ffmpeg.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N