CVE-2019-14709

CRITICAL

MicroDigital N-series <6400.0.8.5 - Info Disclosure

Title source: llm

Description

A cleartext password storage issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The file in question is /usr/local/ipsca/mipsca.db. If a camera is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.

Scores

CVSS v3 9.8
EPSS 0.0041
EPSS Percentile 60.8%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-522
Status published

Affected Products (3)

microdigital/mdc-n4090_firmware < 6400.0.8.5
microdigital/mdc-n4090w_firmware < 6400.0.8.5
microdigital/mdc-n2190v_firmware < 6400.0.8.5

Timeline

Published Aug 06, 2019
Tracked Since Feb 18, 2026