CVE-2018-17559

HIGHCVSS 7.5/10EPSS 0.89%

Last modified

CVE-2018-17559 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.. EPSS estimates a 0.89% chance of exploitation in the next 30 days.

Description

Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
0.89%

54.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
AbusTvip 10000 FirmwareAll versions
AbusTvip 10001 FirmwareAll versions
AbusTvip 10005 FirmwareAll versions
AbusTvip 10005a FirmwareAll versions
AbusTvip 10005b FirmwareAll versions
AbusTvip 10050 FirmwareAll versions
AbusTvip 10051 FirmwareAll versions
AbusTvip 10055a FirmwareAll versions
AbusTvip 10055b FirmwareAll versions
AbusTvip 10500 FirmwareAll versions
AbusTvip 10550 FirmwareAll versions
AbusTvip 11000 FirmwareAll versions
AbusTvip 11050 FirmwareAll versions
AbusTvip 11500 FirmwareAll versions
AbusTvip 11501 FirmwareAll versions
AbusTvip 11502 FirmwareAll versions
AbusTvip 11550 FirmwareAll versions
AbusTvip 11551 FirmwareAll versions
AbusTvip 11552 FirmwareAll versions
AbusTvip 20000 FirmwareAll versions
AbusTvip 20050 FirmwareAll versions
AbusTvip 20500 FirmwareAll versions
AbusTvip 20550 FirmwareAll versions
AbusTvip 21000 FirmwareAll versions
AbusTvip 21050 FirmwareAll versions
AbusTvip 21500 FirmwareAll versions
AbusTvip 21501 FirmwareAll versions
AbusTvip 21502 FirmwareAll versions
AbusTvip 21550 FirmwareAll versions
AbusTvip 21551 FirmwareAll versions
AbusTvip 21552 FirmwareAll versions
AbusTvip 22500 FirmwareAll versions
AbusTvip 31000 FirmwareAll versions
AbusTvip 31001 FirmwareAll versions
AbusTvip 31050 FirmwareAll versions
AbusTvip 31500 FirmwareAll versions
AbusTvip 31501 FirmwareAll versions
AbusTvip 31550 FirmwareAll versions
AbusTvip 31551 FirmwareAll versions
AbusTvip 32500 FirmwareAll versions
AbusTvip 51500 FirmwareAll versions
AbusTvip 51550 FirmwareAll versions
AbusTvip 71500 FirmwareAll versions
AbusTvip 71501 FirmwareAll versions
AbusTvip 71550 FirmwareAll versions
AbusTvip 71551 FirmwareAll versions
AbusTvip 72500 FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2018-17559?
Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.
How severe is CVE-2018-17559?
CVE-2018-17559 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 0.89% probability of exploitation in the next 30 days.
How do I fix CVE-2018-17559?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2018-17559?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST