ID

VAR-201706-0496


CVE

CVE-2017-2841


TITLE

Foscam C1 Indoor HD Camera Web Command injection vulnerability in management interface

Trust: 0.8

sources: JVNDB: JVNDB-2017-005186

DESCRIPTION

An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability. The FoscamIndoorIPCameraC1Series is a C1 series wireless IP camera from Foscam, China. Foscam IP Video Camera is prone to multiple command-injection vulnerabilities. Exploiting these issues could allow an attacker to execute arbitrary commands in context of the affected device

Trust: 2.61

sources: NVD: CVE-2017-2841 // JVNDB: JVNDB-2017-005186 // CNVD: CNVD-2017-12600 // BID: 99184 // VULHUB: VHN-111044 // VULMON: CVE-2017-2841

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

category:['camera device']sub_category:smart home camera

Trust: 0.1

sources: OTHER: None // CNVD: CNVD-2017-12600

AFFECTED PRODUCTS

vendor:foscammodel:c1 indoor hd camerascope:eqversion:2.52.2.37

Trust: 2.4

vendor:foscammodel:ip video camerascope:eqversion:1.9.3.17

Trust: 0.9

vendor:foscammodel:ip video camerascope:neversion:2.0.2.43

Trust: 0.3

sources: CNVD: CNVD-2017-12600 // BID: 99184 // JVNDB: JVNDB-2017-005186 // CNNVD: CNNVD-201706-1123 // NVD: CVE-2017-2841

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-2841
value: HIGH

Trust: 1.0

talos-cna@cisco.com: CVE-2017-2841
value: HIGH

Trust: 1.0

NVD: CVE-2017-2841
value: HIGH

Trust: 0.8

CNVD: CNVD-2017-12600
value: HIGH

Trust: 0.6

CNNVD: CNNVD-201706-1123
value: HIGH

Trust: 0.6

VULHUB: VHN-111044
value: MEDIUM

Trust: 0.1

VULMON: CVE-2017-2841
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2017-2841
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

CNVD: CNVD-2017-12600
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

VULHUB: VHN-111044
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

talos-cna@cisco.com: CVE-2017-2841
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.0

Trust: 1.8

nvd@nist.gov: CVE-2017-2841
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: CNVD: CNVD-2017-12600 // VULHUB: VHN-111044 // VULMON: CVE-2017-2841 // JVNDB: JVNDB-2017-005186 // CNNVD: CNNVD-201706-1123 // NVD: CVE-2017-2841 // NVD: CVE-2017-2841

PROBLEMTYPE DATA

problemtype:CWE-78

Trust: 1.1

problemtype:CWE-77

Trust: 0.9

sources: VULHUB: VHN-111044 // JVNDB: JVNDB-2017-005186 // NVD: CVE-2017-2841

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201706-1123

TYPE

operating system commend injection

Trust: 0.6

sources: CNNVD: CNNVD-201706-1123

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-005186

PATCH

title:Top Pageurl:https://www.foscam.com/

Trust: 0.8

title:Patch for FoscamIndoorIPCameraC1Series command injection vulnerabilityurl:https://www.cnvd.org.cn/patchInfo/show/97214

Trust: 0.6

title:Foscam Indoor IP Camera C1 Series Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=71317

Trust: 0.6

sources: CNVD: CNVD-2017-12600 // JVNDB: JVNDB-2017-005186 // CNNVD: CNNVD-201706-1123

EXTERNAL IDS

db:NVDid:CVE-2017-2841

Trust: 3.6

db:TALOSid:TALOS-2017-0343

Trust: 3.2

db:BIDid:99184

Trust: 2.7

db:JVNDBid:JVNDB-2017-005186

Trust: 0.8

db:CNNVDid:CNNVD-201706-1123

Trust: 0.7

db:CNVDid:CNVD-2017-12600

Trust: 0.6

db:OTHERid:NONE

Trust: 0.1

db:SEEBUGid:SSVID-96494

Trust: 0.1

db:VULHUBid:VHN-111044

Trust: 0.1

db:VULMONid:CVE-2017-2841

Trust: 0.1

sources: OTHER: None // CNVD: CNVD-2017-12600 // VULHUB: VHN-111044 // VULMON: CVE-2017-2841 // BID: 99184 // JVNDB: JVNDB-2017-005186 // CNNVD: CNNVD-201706-1123 // NVD: CVE-2017-2841

REFERENCES

url:https://talosintelligence.com/vulnerability_reports/talos-2017-0343

Trust: 3.2

url:http://www.securityfocus.com/bid/99184

Trust: 1.8

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-2841

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2017-2841

Trust: 0.8

url:https://www.talosintelligence.com/vulnerability_reports/talos-2017-0343

Trust: 0.6

url:http://www.foscam.com/

Trust: 0.3

url:http://blog.talosintelligence.com/2017/06/foscam-vuln-details.html

Trust: 0.3

url:https://ieeexplore.ieee.org/abstract/document/10769424

Trust: 0.1

url:https://cwe.mitre.org/data/definitions/78.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://tools.cisco.com/security/center/viewalert.x?alertid=54236

Trust: 0.1

sources: OTHER: None // CNVD: CNVD-2017-12600 // VULHUB: VHN-111044 // VULMON: CVE-2017-2841 // BID: 99184 // JVNDB: JVNDB-2017-005186 // CNNVD: CNNVD-201706-1123 // NVD: CVE-2017-2841

CREDITS

Cory Duplantis, Claudio Bozzato and another member of Cisco Talos.

Trust: 0.3

sources: BID: 99184

SOURCES

db:OTHERid: -
db:CNVDid:CNVD-2017-12600
db:VULHUBid:VHN-111044
db:VULMONid:CVE-2017-2841
db:BIDid:99184
db:JVNDBid:JVNDB-2017-005186
db:CNNVDid:CNNVD-201706-1123
db:NVDid:CVE-2017-2841

LAST UPDATE DATE

2025-04-20T20:09:26.100000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2017-12600date:2017-07-04T00:00:00
db:VULHUBid:VHN-111044date:2019-10-03T00:00:00
db:VULMONid:CVE-2017-2841date:2022-06-07T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005186date:2017-07-20T00:00:00
db:CNNVDid:CNNVD-201706-1123date:2022-04-20T00:00:00
db:NVDid:CVE-2017-2841date:2025-04-20T01:37:25.860

SOURCES RELEASE DATE

db:CNVDid:CNVD-2017-12600date:2017-07-04T00:00:00
db:VULHUBid:VHN-111044date:2017-06-27T00:00:00
db:VULMONid:CVE-2017-2841date:2017-06-27T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005186date:2017-07-20T00:00:00
db:CNNVDid:CNNVD-201706-1123date:2017-06-28T00:00:00
db:NVDid:CVE-2017-2841date:2017-06-27T15:29:00.177