CVE-2016-9155

The following SIEMENS branded IP Camera Models CCMW3025, CVMW3025-IR, CFMW3025 prior to version 1.41_SP18_S1; CCPW3025, CCPW5025 prior to version 0.1.73_S1; CCMD3025-DN18 prior to version v1.394_S1; CCID1445-DN18, CCID1445-DN28, CCID1145-DN36, CFIS1425, CCIS1425, CFMS2025, CCMS2025, CVMS2025-IR, CFMW1025, CCMW1025 prior to version v2635_SP1 could allow an attacker with network access to the web server to obtain administrative credentials under certain circumstances.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
siemensCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 74%
VendorProductVersion
siemensccid1445-dn18_firmware
-
siemensccid1445-dn28_firmware
-
siemensccid1445-dn36_firmware
-
siemensccis1425_firmware
-
siemensccmd3025-dn18_firmware
-
siemensccms2025_firmware
-
siemensccmw1025_firmware
-
siemensccmw3025_firmware
-
siemensccpw3025_firmware
-
siemenscfis1425_firmware
-
siemenscfms2025_firmware
-
siemenscfmw1025_firmware
-
siemenscfmw3025_firmware
-
siemenscvms2025-ir_firmware
-
siemenscvmw3025-ir_firmware
-
𝑥
= Vulnerable software versions