CVE-2022-34138

HIGH

Biltema IP and Baby Camera Software <v124 - Info Disclosure

Title source: llm
STIX 2.1

Description

Insecure direct object references (IDOR) in the web server of Biltema IP and Baby Camera Software v124 allows attackers to access sensitive information.

Scores

CVSS v3 7.5
EPSS 0.0030
EPSS Percentile 53.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-639
Status published
Products (2)
biltema/baby_camera_firmware 124
biltema/ip_camera_firmware 124
Published Feb 03, 2023
Tracked Since Feb 18, 2026