Lucene search

K
cvelistMitreCVELIST:CVE-2020-9528
HistoryAug 10, 2020 - 3:25 p.m.

CVE-2020-9528

2020-08-1015:25:38
mitre
www.cve.org
1
firmware
iot devices
user session data
multiple vendors
cryptographic issues
cve-2020-9528
shenzhen hichip vision technology
remote attackers
internet of things
eavesdropping
user video/audio streams
brand names

EPSS

0.004

Percentile

74.4%

Firmware developed by Shenzhen Hichip Vision Technology (V6 through V20), as used by many different vendors in millions of Internet of Things devices, suffers from cryptographic issues that allow remote attackers to access user session data, as demonstrated by eavesdropping on user video/audio streams, capturing credentials, and compromising devices. This affects products marketed under the following brand names: Accfly, Alptop, Anlink, Besdersec, BOAVISION, COOAU, CPVAN, Ctronics, D3D Security, Dericam, Elex System, Elite Security, ENSTER, ePGes, Escam, FLOUREON, GENBOLT, Hongjingtian (HJT), ICAMI, Iegeek, Jecurity, Jennov, KKMoon, LEFTEK, Loosafe, Luowice, Nesuniq, Nettoly, ProElite, QZT, Royallite, SDETER, SV3C, SY2L, Tenvis, ThinkValue, TOMLOV, TPTEK, WGCC, and ZILINK.

EPSS

0.004

Percentile

74.4%

Related for CVELIST:CVE-2020-9528