SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2017-11633

Remote attackers can discover RTSP credentials by connecting to TCP port 9527 and reading the InsertConnect field.

HIGH 7.5EPSS 1.40%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (1.40%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

An issue was discovered on Wireless IP Camera 360 devices. Remote attackers can discover RTSP credentials by connecting to TCP port 9527 and reading the InsertConnect field.

CVSS 3.0
7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS
1.40% probability · 71th percentile
CISA KEV
Not listed
Affected
-/wireless ip camera 360
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.