CVE-2019-14705

An Incorrect Access Control issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5 because any valid cookie can be used to make requests as an admin.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
VendorProductVersion
microdigitalmdc-n4090_firmware
𝑥
≤ 6400.0.8.5
microdigitalmdc-n4090w_firmware
𝑥
≤ 6400.0.8.5
microdigitalmdc-n2190v_firmware
𝑥
≤ 6400.0.8.5
𝑥
= Vulnerable software versions