packetstormsecurity.com
http://packetstormsecurity.com/files/151377/Sricam-gSOAP-2.8-Denial-Of-Service.html CVE-2019-6973
HIGH
Sricam gSOAP 2.8 - Denial of Service
Record summary
CVE-2019-6973 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.
Description
Sricam IP CCTV cameras are vulnerable to denial of service via multiple incomplete HTTP requests because the web server (based on gSOAP 2.8.x) is configured for an iterative queueing approach (aka non-threaded operation) with a timeout of several seconds.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSricam gSOAP 2.8 - Denial of ServiceExploitDB exploitby Andrew WatsonNot analyzed1 file
References
4github.com
https://github.com/bitfu/sricam-gsoap2.8-dos-exploit nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-6973 46261exploit
https://www.exploit-db.com/exploits/46261