Cross-Site Scripting in VIVOTEK Network Cameras
CVE-2018-18244
6.1MEDIUM
What is CVE-2018-18244?
This vulnerability affects VIVOTEK Network Camera Series products by allowing remote attackers to execute arbitrary JavaScript code through the manipulation of the HTTP Referer Header. This can be particularly dangerous as it enables unauthorized actions and data access, potentially compromising the security of affected camera systems. Keeping firmware updated is essential to mitigate such risks.