Lucene search

K
cve[email protected]CVE-2013-2578
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2013-2578

2022-10-0316:15:02
CWE-78
web.nvd.nist.gov
40
cve-2013-2578
tp-link
ip cameras
remote command execution
vulnerability
nvd
security advisory

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.5%

cgi-bin/admin/servetest in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the ServerName parameter and (2) other unspecified parameters.

Affected configurations

NVD
Node
tp-linktl-sc3130Match-
OR
tp-linktl-sc3130gMatch-
OR
tp-linktl-sc3171Match-
OR
tp-linktl-sc3171gMatch-
AND
tp-linklm_firmwareRange1.6.18p12_sign5

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.5%