CVE-2017-7912

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
08/04/2019
Last modified:
17/06/2026

Description

Hanwha Techwin SRN-4000, SRN-4000 firmware versions prior to SRN4000_v2.16_170401, A specially crafted http request and response could allow an attacker to gain access to the device management page with admin privileges without proper authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:hanwhasecurity:srn-4000_firmware:*:*:*:*:*:*:*:* 2.16_170401 (excluding)
cpe:2.3:h:hanwhasecurity:srn-4000:-:*:*:*:*:*:*:*