CVE-2018-10328

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
24/04/2018
Last modified:
30/08/2018

Description

Momentum Axel 720P 5.1.8 devices have a hardcoded password of streaming for the appagent account, which allows remote attackers to view the RTSP video stream.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:momentum:momentum_axel_720p_firmware:5.1.8:*:*:*:*:*:*:*
cpe:2.3:h:momentum:momentum_axel_720p:-:*:*:*:*:*:*:*