CVE-2013-1391
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
30/10/2019
Last modified:
05/11/2019
Description
Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Well-Vision Inc DVR systems allows a remote attacker to retrieve the device configuration.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:huntcctv:dvr-04ch_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dvr-04ch:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dvr-04nc_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dvr-04nc:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dvr-08ch_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dvr-08ch:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dvr-08nc_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dvr-08nc:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dvr-16ch_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dvr-16ch:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dr6-704a4h_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dr6-704a4h:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dr6-708a4h_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:huntcctv:dr6-708a4h:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:huntcctv:dr6-7316a4h_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page