Authentication Issues in C520V21 Smart Camera by ZTE
CVE-2019-3424

8.2HIGH

Key Information:

Status
Vendor
CVE Published:
18 November 2019

What is CVE-2019-3424?

The C520V21 Smart Camera by ZTE is affected by an authentication issues vulnerability present in versions up to V2.1.14. This flaw allows an unauthorized attacker to gain access to the device's web services through the authorized browser on the same computer. As a result, the attacker could perform operations without proper authentication, raising serious concerns for user privacy and data security.

Affected Version(s)

C520V21 All versions up to V2.1.14

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.