// For flags

CVE-2021-40150

Reolink E1 Zoom Camera 3.0.0.716 Configuration Disclosure

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

2
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The web server of the E1 Zoom camera through 3.0.0.716 discloses its configuration via the /conf/ directory that is mapped to a publicly accessible path. In this way an attacker can download the entire NGINX/FastCGI configurations by querying the /conf/nginx.conf or /conf/fastcgi.conf URI.

El servidor web de la cámara E1 Zoom versiones hasta 3.0.0.716, divulga su configuración por medio del directorio /conf/ que está mapeado en una ruta de acceso pública. De este modo, un atacante puede descargar toda la configuración de NGINX/FastCGI al consultar el URI /conf/nginx.conf o /conf/fastcgi.conf

Reolink E1 Zoom Camera versions 3.0.0.716 and below suffer from a configuration disclosure vulnerability.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-08-27 CVE Reserved
  • 2022-06-06 CVE Published
  • 2022-06-06 First Exploit
  • 2024-08-04 CVE Updated
  • 2025-02-20 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-552: Files or Directories Accessible to External Parties
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Reolink
Search vendor "Reolink"
E1 Zoom Firmware
Search vendor "Reolink" for product "E1 Zoom Firmware"
<= 3.0.0.716
Search vendor "Reolink" for product "E1 Zoom Firmware" and version " <= 3.0.0.716"
-
Affected
in Reolink
Search vendor "Reolink"
E1 Zoom
Search vendor "Reolink" for product "E1 Zoom"
--
Safe