CVE-2019-25062
Sricam IP CCTV Camera Device Viewer stack-based overflow
Severity Score
7.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A vulnerability was found in Sricam IP CCTV Camera and classified as critical. This issue affects some unknown processing of the component Device Viewer. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
Se ha encontrado una vulnerabilidad en Sricam IP CCTV Camera y ha sido clasificada como crítica. Este problema afecta a un procesamiento desconocido del componente Device Viewer. La manipulación conlleva a una corrupción de memoria. El ataque debe ser abordado localmente. La explotación ha sido revelada al público y puede ser usada
*Credits:
Alessandro Magnosi
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-06-03 CVE Reserved
- 2022-06-04 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-121: Stack-based Buffer Overflow
- CWE-787: Out-of-bounds Write
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.159431 | Third Party Advisory | |
https://www.exploit-db.com/exploits/47477 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sricam Search vendor "Sricam" | Deviceviewer Search vendor "Sricam" for product "Deviceviewer" | 3.12.0.1 Search vendor "Sricam" for product "Deviceviewer" and version "3.12.0.1" | - |
Affected
|