ID

VAR-201706-0504


CVE

CVE-2017-2849


TITLE

Foscam C1 Indoor HD Camera Web Command injection vulnerability in management interface

Trust: 0.8

sources: JVNDB: JVNDB-2017-005153

DESCRIPTION

In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during NTP server configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability. FoscamC1IndoorHDCamera is a wireless HD IP camera from China Foscam. A security vulnerability exists in the web management interface in FoscamC1IndoorHDCamera using version 2.52.2.37 of the application firmware. Foscam IP Video Camera is prone to multiple command-injection vulnerabilities. Exploiting these issues could allow an attacker to execute arbitrary commands in context of the affected device

Trust: 2.52

sources: NVD: CVE-2017-2849 // JVNDB: JVNDB-2017-005153 // CNVD: CNVD-2017-14064 // BID: 99184 // VULHUB: VHN-111052

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2017-14064

AFFECTED PRODUCTS

vendor:foscammodel:c1 indoor hd camerascope:eqversion:2.52.2.37

Trust: 2.4

vendor:foscammodel:c1 indoor hd camerasscope:lteversion:<=2.52.2.37

Trust: 0.6

vendor:foscammodel:ip video camerascope:eqversion:1.9.3.17

Trust: 0.3

vendor:foscammodel:ip video camerascope:neversion:2.0.2.43

Trust: 0.3

sources: CNVD: CNVD-2017-14064 // BID: 99184 // JVNDB: JVNDB-2017-005153 // CNNVD: CNNVD-201706-1213 // NVD: CVE-2017-2849

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-2849
value: HIGH

Trust: 1.0

talos-cna@cisco.com: CVE-2017-2849
value: HIGH

Trust: 1.0

NVD: CVE-2017-2849
value: HIGH

Trust: 0.8

CNVD: CNVD-2017-14064
value: MEDIUM

Trust: 0.6

CNNVD: CNNVD-201706-1213
value: HIGH

Trust: 0.6

VULHUB: VHN-111052
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2017-2849
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

CNVD: CNVD-2017-14064
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

VULHUB: VHN-111052
severity: MEDIUM
baseScore: 6.5
vectorString: AV:N/AC:L/AU:S/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

talos-cna@cisco.com: CVE-2017-2849
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.0

Trust: 1.8

nvd@nist.gov: CVE-2017-2849
baseSeverity: HIGH
baseScore: 8.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: CNVD: CNVD-2017-14064 // VULHUB: VHN-111052 // JVNDB: JVNDB-2017-005153 // CNNVD: CNNVD-201706-1213 // NVD: CVE-2017-2849 // NVD: CVE-2017-2849

PROBLEMTYPE DATA

problemtype:CWE-78

Trust: 1.1

problemtype:CWE-77

Trust: 0.9

sources: VULHUB: VHN-111052 // JVNDB: JVNDB-2017-005153 // NVD: CVE-2017-2849

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201706-1213

TYPE

operating system commend injection

Trust: 0.6

sources: CNNVD: CNNVD-201706-1213

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-005153

PATCH

title:Top Pageurl:https://www.foscam.com/

Trust: 0.8

title:Patch for FoscamC1IndoorHDCamera Command Injection Vulnerability (CNVD-2017-14064)url:https://www.cnvd.org.cn/patchInfo/show/97904

Trust: 0.6

title:Foscam C1 Indoor HD Camera Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=71351

Trust: 0.6

sources: CNVD: CNVD-2017-14064 // JVNDB: JVNDB-2017-005153 // CNNVD: CNNVD-201706-1213

EXTERNAL IDS

db:NVDid:CVE-2017-2849

Trust: 3.4

db:TALOSid:TALOS-2017-0351

Trust: 3.1

db:BIDid:99184

Trust: 2.6

db:JVNDBid:JVNDB-2017-005153

Trust: 0.8

db:CNNVDid:CNNVD-201706-1213

Trust: 0.7

db:CNVDid:CNVD-2017-14064

Trust: 0.6

db:SEEBUGid:SSVID-96504

Trust: 0.1

db:VULHUBid:VHN-111052

Trust: 0.1

sources: CNVD: CNVD-2017-14064 // VULHUB: VHN-111052 // BID: 99184 // JVNDB: JVNDB-2017-005153 // CNNVD: CNNVD-201706-1213 // NVD: CVE-2017-2849

REFERENCES

url:https://talosintelligence.com/vulnerability_reports/talos-2017-0351

Trust: 2.3

url:http://www.securityfocus.com/bid/99184

Trust: 1.7

url:https://www.talosintelligence.com/vulnerability_reports/talos-2017-0351

Trust: 1.4

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-2849

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2017-2849

Trust: 0.8

url:http://www.foscam.com/

Trust: 0.3

url:http://blog.talosintelligence.com/2017/06/foscam-vuln-details.html

Trust: 0.3

sources: CNVD: CNVD-2017-14064 // VULHUB: VHN-111052 // BID: 99184 // JVNDB: JVNDB-2017-005153 // CNNVD: CNNVD-201706-1213 // NVD: CVE-2017-2849

CREDITS

Cory Duplantis, Claudio Bozzato and another member of Cisco Talos.

Trust: 0.3

sources: BID: 99184

SOURCES

db:CNVDid:CNVD-2017-14064
db:VULHUBid:VHN-111052
db:BIDid:99184
db:JVNDBid:JVNDB-2017-005153
db:CNNVDid:CNNVD-201706-1213
db:NVDid:CVE-2017-2849

LAST UPDATE DATE

2025-04-20T23:02:03.062000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2017-14064date:2017-07-12T00:00:00
db:VULHUBid:VHN-111052date:2019-10-03T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005153date:2017-07-19T00:00:00
db:CNNVDid:CNNVD-201706-1213date:2022-04-20T00:00:00
db:NVDid:CVE-2017-2849date:2025-04-20T01:37:25.860

SOURCES RELEASE DATE

db:CNVDid:CNVD-2017-14064date:2017-07-12T00:00:00
db:VULHUBid:VHN-111052date:2017-06-29T00:00:00
db:BIDid:99184date:2017-06-19T00:00:00
db:JVNDBid:JVNDB-2017-005153date:2017-07-19T00:00:00
db:CNNVDid:CNNVD-201706-1213date:2017-06-30T00:00:00
db:NVDid:CVE-2017-2849date:2017-06-29T17:29:00.337