CVE-2017-2831
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can cause a buffer overflow resulting in overwriting arbitrary data. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
Se presenta una vulnerabilidad de desbordamiento de búfer explotable en la interfaz de administración web utilizada por la Cámara HD para Interiores C1 de Foscam ejecutando el firmware de la aplicación versión 2.52.2.37. Una petición HTTP especialmente diseñada puede causar un desbordamiento de búfer resultando en la sobreescritura de datos arbitrarios. Un atacante puede simplemente enviar una petición HTTP al dispositivo para desencadenar esta vulnerabilidad.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-12-01 CVE Reserved
- 2017-06-21 CVE Published
- 2024-03-03 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/99190 | Broken Link |
URL | Date | SRC |
---|---|---|
https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0332 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Foscam Search vendor "Foscam" | C1 Indoor Hd Camera Firmware Search vendor "Foscam" for product "C1 Indoor Hd Camera Firmware" | 2.52.2.37 Search vendor "Foscam" for product "C1 Indoor Hd Camera Firmware" and version "2.52.2.37" | - |
Affected
| in | Foscam Search vendor "Foscam" | C1 Indoor Hd Camera Search vendor "Foscam" for product "C1 Indoor Hd Camera" | - | - |
Safe
|