漏洞描述 宇视IPC由浙江宇视科技有限公司生产、IPCamera顾名思义就是网络摄像机,它是一种由传统摄像机与网络技术结合所产生的新一代摄像机。产品中存在权限绕过漏洞。远程攻击者通过构造特定的恶意请求,利用该漏洞获取产品的部分信息,造成权限绕过。
相关漏洞推荐 POC 易达科技-ECMS getlistProjAuditDataQGC 存在SQL注入漏洞 POC 易达科技-ECMS getProjectBaseDocData 存在SQL注入漏洞 ecshop-rce: ECshop RCE POC CVE-2018-14918: LOYTEC LGATE-902 6.3.2 - Local File Inclusion POC CVE-2018-15138: LG-Ericsson iPECS NMS 30M - Local File Inclusion POC CVE-2020-17456: SEOWON INTECH SLC-130 & SLR-120S - Unauthenticated Remote Code Execution POC CVE-2021-41291: ECOA Building Automation System - Directory Traversal Content Disclosure POC CVE-2021-41293: ECOA Building Automation System - Arbitrary File Retrieval POC CVE-2021-41460: ECShop 4.1.0 - SQL Injection POC CVE-2022-45699: APsystems ECU-R Firmware - Command Injection POC CVE-2023-39560: ECTouch v2 - SQL Injection POC CVE-2024-7029: AVTECH IP Camera - Command Injection POC CVE-2021-3129: LARAVEL <= V8.4.2 DEBUG MODE - REMOTE CODE EXECUTION