ID

VAR-201706-0503


CVE

CVE-2017-2848


TITLE

Foscam C1 Indoor HD Camera Web Command injection vulnerability in management interface

Trust: 0.8

sources: JVNDB: JVNDB-2017-005152

DESCRIPTION

In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability. FoscamC1IndoorHDCamera is a wireless HD IP camera from China Foscam. A security vulnerability exists in the web management interface in FoscamC1IndoorHDCamera using version 2.52.2.37 of the application firmware. Foscam IP Video Camera is prone to multiple command-injection vulnerabilities. Exploiting these issues could allow an attacker to execute arbitrary commands in context of the affected device

Trust: 2.52

sources: NVD: CVE-2017-2848 // JVNDB: JVNDB-2017-005152 // CNVD: CNVD-2017-14063 // BID: 99184 // VULHUB: VHN-111051

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2017-14063

AFFECTED PRODUCTS

vendor:foscammodel:c1 indoor hd camerascope:eqversion:2.52.2.37

Trust: 2.4

vendor:foscammodel:c1 indoor hd camerasscope:lteversion:<=2.52.2.37

Trust: 0.6

vendor:foscammodel:ip video camerascope:eqversion:1.9.3.17

Trust: 0.3

vendor:foscammodel:ip video camerascope:neversion:2.0.2.43

Trust: 0.3

sources: CNVD: CNVD-2017-14063 // BID: 99184 // JVNDB: JVNDB-2017-005152 // CNNVD: CNNVD-201706-1214 // NVD: CVE-2017-2848

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-2848
value: HIGH

Trust: 1.0

talos-cna@cisco.com: CVE-2017-2848
value: HIGH

Trust: 1.0

NVD: CVE-2017-2848
value: HIGH

Trust: 0.8

CNVD: CNVD-2017-14063
value: MEDIUM

Trust: 0.6

CNNVD: CNNVD-201706-1214
value: HIGH

Trust: 0.6

VULHUB: VHN-111051
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2017-2848
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

CNVD: CNVD-2017-14063
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

VULHUB: VHN-111051
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

talos-cna@cisco.com: CVE-2017-2848
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.0

Trust: 1.8

nvd@nist.gov: CVE-2017-2848
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: CNVD: CNVD-2017-14063 // VULHUB: VHN-111051 // JVNDB: JVNDB-2017-005152 // CNNVD: CNNVD-201706-1214 // NVD: CVE-2017-2848 // NVD: CVE-2017-2848

PROBLEMTYPE DATA

problemtype:CWE-78

Trust: 1.1

problemtype:CWE-77

Trust: 0.9

sources: VULHUB: VHN-111051 // JVNDB: JVNDB-2017-005152 // NVD: CVE-2017-2848

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201706-1214

TYPE

operating system commend injection

Trust: 0.6

sources: CNNVD: CNNVD-201706-1214

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-005152

PATCH

title:Top Pageurl:https://www.foscam.com/

Trust: 0.8

title:FoscamC1IndoorHDCameracgiproxy.fcgidns2 address configuration command injection vulnerability patchurl:https://www.cnvd.org.cn/patchInfo/show/97903

Trust: 0.6

title:Foscam C1 Indoor HD Camera Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=71352

Trust: 0.6

sources: CNVD: CNVD-2017-14063 // JVNDB: JVNDB-2017-005152 // CNNVD: CNNVD-201706-1214

EXTERNAL IDS

db:NVDid:CVE-2017-2848

Trust: 3.4

db:TALOSid:TALOS-2017-0350

Trust: 3.1

db:BIDid:99184

Trust: 2.6

db:JVNDBid:JVNDB-2017-005152

Trust: 0.8

db:CNNVDid:CNNVD-201706-1214

Trust: 0.7

db:CNVDid:CNVD-2017-14063

Trust: 0.6

db:SEEBUGid:SSVID-96489

Trust: 0.1

db:VULHUBid:VHN-111051

Trust: 0.1

sources: CNVD: CNVD-2017-14063 // VULHUB: VHN-111051 // BID: 99184 // JVNDB: JVNDB-2017-005152 // CNNVD: CNNVD-201706-1214 // NVD: CVE-2017-2848

REFERENCES

url:https://talosintelligence.com/vulnerability_reports/talos-2017-0350

Trust: 2.3

url:http://www.securityfocus.com/bid/99184

Trust: 1.7

url:https://www.talosintelligence.com/vulnerability_reports/talos-2017-0350

Trust: 1.4

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-2848

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2017-2848

Trust: 0.8

url:http://www.foscam.com/

Trust: 0.3

url:http://blog.talosintelligence.com/2017/06/foscam-vuln-details.html

Trust: 0.3

sources: CNVD: CNVD-2017-14063 // VULHUB: VHN-111051 // BID: 99184 // JVNDB: JVNDB-2017-005152 // CNNVD: CNNVD-201706-1214 // NVD: CVE-2017-2848

CREDITS

Cory Duplantis, Claudio Bozzato and another member of Cisco Talos.

Trust: 0.3

sources: BID: 99184

SOURCES

db:CNVDid:CNVD-2017-14063
db:VULHUBid:VHN-111051
db:BIDid:99184
db:JVNDBid:JVNDB-2017-005152
db:CNNVDid:CNNVD-201706-1214
db:NVDid:CVE-2017-2848

LAST UPDATE DATE

2025-04-20T22:46:33.915000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2017-14063date:2017-07-12T00:00:00
db:VULHUBid:VHN-111051date:2019-10-03T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005152date:2017-07-19T00:00:00
db:CNNVDid:CNNVD-201706-1214date:2022-04-20T00:00:00
db:NVDid:CVE-2017-2848date:2025-04-20T01:37:25.860

SOURCES RELEASE DATE

db:CNVDid:CNVD-2017-14063date:2017-07-12T00:00:00
db:VULHUBid:VHN-111051date:2017-06-29T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005152date:2017-07-19T00:00:00
db:CNNVDid:CNNVD-201706-1214date:2017-06-30T00:00:00
db:NVDid:CVE-2017-2848date:2017-06-29T17:29:00.307