CVE-2018-18428

TP-Link TL-SC3130 1.6.18P12_121101 devices allow unauthenticated RTSP stream access, as demonstrated by a /jpg/image.jpg URI.
References
Link Resource
https://packetstormsecurity.com/files/149843 Exploit Third Party Advisory VDB Entry
https://www.exploit-db.com/exploits/45632/ Exploit Third Party Advisory VDB Entry
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2018-5497.php Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tp-link:tl-sc3130_firmware:1.6.18p12_121101:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-sc3130:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-10-19 22:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-18428

Mitre link : CVE-2018-18428

CVE.ORG link : CVE-2018-18428


JSON object : View

Products Affected

tp-link

  • tl-sc3130
  • tl-sc3130_firmware
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor