Authentication Flaw in D-LINK and TESCO IP Cameras
CVE-2013-1603

5.3MEDIUM

Key Information:

Vendor
D-Link
Vendor
CVE Published:
28 January 2020

Summary

An authentication vulnerability has been discovered in various D-LINK and TESCO IP camera models. This issue arises from hard-coded credentials that function as a backdoor, granting unauthorized remote attackers access to the RTSP video stream. The flaw impacts a range of products and versions, leaving them susceptible to exploitation without proper authentication checks.

References

EPSS Score

57% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.