8.8
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, SNC-DH120T, SNC-DH160, SNC-DH220, SNC-DH220T, SNC-DH260, SNC-EB520, SNC-EM520, SNC-EM521, SNC-ZB550, SNC-ZM550, SNC-ZM551, SNC-EP550, SNC-EP580, SNC-ER550, SNC-ER550C, SNC-ER580, SNC-ER585, SNC-ER585H, SNC-ZP550, SNC-ZR550, SNC-EP520, SNC-EP521, SNC-ER520, SNC-ER521, SNC-ER521C network cameras with firmware before Ver.1.86.00 and SONY SNC-CX600, SNC-CX600W, SNC-EB600, SNC-EB600B, SNC-EB602R, SNC-EB630, SNC-EB630B, SNC-EB632R, SNC-EM600, SNC-EM601, SNC-EM602R, SNC-EM602RC, SNC-EM630, SNC-EM631, SNC-EM632R, SNC-EM632RC, SNC-VB600, SNC-VB600B, SNC-VB600B5, SNC-VB630, SNC-VB6305, SNC-VB6307, SNC-VB632D, SNC-VB635, SNC-VM600, SNC-VM600B, SNC-VM600B5, SNC-VM601, SNC-VM601B, SNC-VM602R, SNC-VM630, SNC-VM6305, SNC-VM6307, SNC-VM631, SNC-VM632R, SNC-WR600, SNC-WR602, SNC-WR602C, SNC-WR630, SNC-WR632, SNC-WR632C, SNC-XM631, SNC-XM632, SNC-XM636, SNC-XM637, SNC-VB600L, SNC-VM600L, SNC-XM631L, SNC-WR602CL network cameras with firmware before Ver.2.7.2 are prone to sensitive information disclosure. This may allow an attacker on the same local network segment to login to the device with administrative privileges and perform operations on the device.
Affected (2)
Products: Sony: Snc Series Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.8.5.00 |
| Running on/with | Platform Versions |
|---|---|
Sony Snc Cx600 | All versions |
Sony Snc Cx600w | All versions |
Sony Snc Eb600 | All versions |
Sony Snc Eb600b | All versions |
Sony Snc Eb602r | All versions |
Sony Snc Eb630 | All versions |
Sony Snc Eb630b | All versions |
Sony Snc Eb632r | All versions |
Sony Snc Em600 | All versions |
Sony Snc Em601 | All versions |
Sony Snc Em602r | All versions |
Sony Snc Em602rc | All versions |
Sony Snc Em630 | All versions |
Sony Snc Em631 | All versions |
Sony Snc Em632r | All versions |
Sony Snc Em632rc | All versions |
Sony Snc Vb600 | All versions |
Sony Snc Vb600b | All versions |
Sony Snc Vb600b5 | All versions |
Sony Snc Vb600l | All versions |
Sony Snc Vb630 | All versions |
Sony Snc Vb6305 | All versions |
Sony Snc Vb6307 | All versions |
Sony Snc Vb632d | All versions |
Sony Snc Vb635 | All versions |
Sony Snc Vm600 | All versions |
Sony Snc Vm600b | All versions |
Sony Snc Vm600b5 | All versions |
Sony Snc Vm600l | All versions |
Sony Snc Vm601 | All versions |
Sony Snc Vm601b | All versions |
Sony Snc Vm602r | All versions |
Sony Snc Vm630 | All versions |
Sony Snc Vm6305 | All versions |
Sony Snc Vm6307 | All versions |
Sony Snc Vm631 | All versions |
Sony Snc Vm632r | All versions |
Sony Snc Wr600 | All versions |
Sony Snc Wr602 | All versions |
Sony Snc Wr602c | All versions |
Sony Snc Wr602cl | All versions |
Sony Snc Wr630 | All versions |
Sony Snc Wr632 | All versions |
Sony Snc Wr632c | All versions |
Sony Snc Xm631 | All versions |
Sony Snc Xm631l | All versions |
Sony Snc Xm632 | All versions |
Sony Snc Xm636 | All versions |
Sony Snc Xm637 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.7.0 |
| Running on/with | Platform Versions |
|---|---|
Sony Snc Ch115 | All versions |
Sony Snc Ch120 | All versions |
Sony Snc Ch160 | All versions |
Sony Snc Ch220 | All versions |
Sony Snc Ch260 | All versions |
Sony Snc Dh120 | All versions |
Sony Snc Dh120t | All versions |
Sony Snc Dh160 | All versions |
Sony Snc Dh220 | All versions |
Sony Snc Dh220t | All versions |
Sony Snc Dh260 | All versions |
Sony Snc Eb520 | All versions |
Sony Snc Em520 | All versions |
Sony Snc Em521 | All versions |
Sony Snc Ep520 | All versions |
Sony Snc Ep521 | All versions |
Sony Snc Ep550 | All versions |
Sony Snc Ep580 | All versions |
Sony Snc Er520 | All versions |
Sony Snc Er521 | All versions |
Sony Snc Er521c | All versions |
Sony Snc Er550 | All versions |
Sony Snc Er550c | All versions |
Sony Snc Er580 | All versions |
Sony Snc Er585 | All versions |
Sony Snc Er585h | All versions |
Sony Snc Zb550 | All versions |
Sony Snc Zm550 | All versions |
Sony Snc Zm551 | All versions |
Sony Snc Zp550 | All versions |
Sony Snc Zr550 | All versions |
References (4)
Source: vultures@jpcert.or.jp
Third Party AdvisoryVDB Entry
Source: vultures@jpcert.or.jp
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.