← Back

Ge 131 Bt 1837836 Firmware

ge-131_bt-1837836_firmware

Vendor: Basetech • 6 CVEs

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
Use of an undocumented user in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to view the video stream.
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Unprotected Storage of Credentials vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows local users to gain access to the video streaming username and password via SQLite files containing plain text crede...Show more
Unprotected Storage of Credentials vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows local users to gain access to the video streaming username and password via SQLite files containing plain text credentials.Show less
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
A predictable device ID in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to connect to the device.
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrary system commands as the root user.
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Cleartext Transmission of Sensitive Information vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 exists which could leak sensitive information transmitted between the mobile app and the camera device.
1Basetech
1Ge 131 Bt 1837836 Firmware
Nov 21, 2024
Nov 17, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In BASETech GE-131 BT-1837836 firmware 20180921, the web-server on the system is configured with the option “DocumentRoot /etc“. This allows an attacker with network access to the web-server to download any files from th...Show more
In BASETech GE-131 BT-1837836 firmware 20180921, the web-server on the system is configured with the option “DocumentRoot /etc“. This allows an attacker with network access to the web-server to download any files from the “/etc” folder without authentication. No path traversal sequences are needed to exploit this vulnerability.Show less