Authentication Bypass in Vivotek IP Cameras
CVE-2013-1596

5.3MEDIUM

Key Information:

Vendor

Vivotek

Vendor
CVE Published:
24 January 2020

What is CVE-2013-1596?

The vulnerability allows unauthorized users to bypass authentication on specific Vivotek PT7135 IP Camera models by sending specially crafted RTSP packets to TCP port 554. This weakness can be exploited, potentially enabling attackers to gain unwarranted access to the camera's functionalities and data streams.

References

EPSS Score

21% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.