CVE-2019-14709
CRITICALMicroDigital N-series <6400.0.8.5 - Info Disclosure
Title source: llmDescription
A cleartext password storage issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The file in question is /usr/local/ipsca/mipsca.db. If a camera is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.
Scores
CVSS v3
9.8
EPSS
0.0041
EPSS Percentile
60.8%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-522
Status
published
Affected Products (3)
microdigital/mdc-n4090_firmware
< 6400.0.8.5
microdigital/mdc-n4090w_firmware
< 6400.0.8.5
microdigital/mdc-n2190v_firmware
< 6400.0.8.5
Timeline
Published
Aug 06, 2019
Tracked Since
Feb 18, 2026