ID

VAR-201903-1737


TITLE

WSD-T13 Cloud Storage Camera Has Unauthorized Addition Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2019-06646

DESCRIPTION

Shenzhen Woshida Technology Co., Ltd. is an enterprise specializing in the development, production, sales and service of security monitoring products. The WSD-T13 cloud storage camera has an unauthorized addition vulnerability. The vulnerability is due to the manufacturer's use of default passwords. Allows attackers to use vulnerabilities to add camera accounts and control other people's devices.

Trust: 0.6

sources: CNVD: CNVD-2019-06646

IOT TAXONOMY

category:['ICS', 'Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2019-06646

AFFECTED PRODUCTS

vendor:woshidamodel:wsd-t13 cloud storage camerascope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2019-06646

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2019-06646
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2019-06646
severity: MEDIUM
baseScore: 4.0
vectorString: AV:N/AC:L/AU:S/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: SINGLE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 8.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2019-06646

PATCH

title:WSD-T13 Cloud Storage Camera Has Unauthorized Addition Vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/153665

Trust: 0.6

sources: CNVD: CNVD-2019-06646

EXTERNAL IDS

db:CNVDid:CNVD-2019-06646

Trust: 0.6

sources: CNVD: CNVD-2019-06646

SOURCES

db:CNVDid:CNVD-2019-06646

LAST UPDATE DATE

2022-05-04T09:50:49.001000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2019-06646date:2019-03-12T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2019-06646date:2019-03-31T00:00:00