CVE-2018-3938
14.08.2018, 19:29
An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5 firmware 1.87.00. A specially crafted POST can cause a stack-based buffer overflow, resulting in remote code execution. An attacker can send a malicious POST request to trigger this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
sony | snc-eb600_firmware | 1.87.00 |
sony | snc-eb630_firmware | 1.87.00 |
sony | snc-eb600b_firmware | 1.87.00 |
sony | snc-eb630b_firmware | 1.87.00 |
sony | snc-eb602r_firmware | 1.87.00 |
sony | snc-eb632r_firmware | 1.87.00 |
sony | snc-em600_firmware | 1.87.00 |
sony | snc-em601_firmware | 1.87.00 |
sony | snc-em630_firmware | 1.87.00 |
sony | snc-em631_firmware | 1.87.00 |
sony | snc-em602r_firmware | 1.87.00 |
sony | snc-em632r_firmware | 1.87.00 |
sony | snc-em602rc_firmware | 1.87.00 |
sony | snc-em632rc_firmware | 1.87.00 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration