zzz66686/CVE-2017-14262

zzz66686/CVE-2017-14262

Releases0
Stars6

CVE History

CVEPublishedCVSS v3CVSS v2
9.3 HIGH

On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via certain szUserName JSON data to cgi-bin/main-cgi, and login to the device with that hash in the szUserPasswd parameter.