CVE-2018-3856
23.08.2018, 22:29
An exploitable vulnerability exists in the smart cameras RTSP configuration of the Samsung SmartThings Hub STH-ETH-250 - Firmware version 0.20.17. The device incorrectly handles spaces in the URL field, leading to an arbitrary operating system command injection. An attacker can send a series of HTTP requests to trigger this vulnerability.
Vendor | Product | Version |
---|---|---|
samsung | sth-eth-250_firmware | 0.20.17 |
𝑥
= Vulnerable software versions