HIGH
An issue was discovered on EDIMAX IC-3140W through 3.06, IC-5150W through 3.09, and IC-6220DC through 3.06 devices
Published Apr 26, 2018
8.8
HIGHCVSS 3.0
EPSS 2.75%
Description
An issue was discovered on EDIMAX IC-3140W through 3.06, IC-5150W through 3.09, and IC-6220DC through 3.06 devices. The ipcam_cgi binary contains a stack-based buffer overflow that is possible to trigger from a remote unauthenticated /camera-cgi/public/getsysyeminfo.cgi?action=VALUE_HERE HTTP request: if the VALUE_HERE length is more than 0x400 (1024), it is possible to overwrite other values located on the stack due to an incorrect use of the strcpy() function.
Affected products
No data.
Configuration 1
AND
- ≤ 3.06
Configuration 2
AND
- ≤ 3.09
Configuration 3
AND
- ≤ 3.06
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://gitlab.com/nemux/CVE-2018-8072/blob/master/CVE-2018-8072_PoC.txt x_refsource_MISCExploitThird Party Advisory
- https://gitlab.com/nemux/CVE-2018-8072/blob/master/nemux_codemotion_Rome18_cover.pdf x_refsource_MISCExploitTechnical DescriptionThird Party Advisory
- https://www.edimax.com/edimax/download/download/data/edimax/uk/download/for_home/home_network_cameras/home_network_cameras_indoor_fixed/ic-3140w x_refsource_CONFIRMPatchProductVendor Advisory
- https://www.nemux.org/2018/04/24/cve-2018-8072/ x_refsource_MISCPatchThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://gitlab.com/nemux/CVE-2018-8072/blob/master/CVE-2018-8072_PoC.txt | x_refsource_MISCExploitThird Party Advisory | |
| https://gitlab.com/nemux/CVE-2018-8072/blob/master/nemux_codemotion_Rome18_cover.pdf | x_refsource_MISCExploitTechnical DescriptionThird Party Advisory | |
| https://www.edimax.com/edimax/download/download/data/edimax/uk/download/for_home/home_network_cameras/home_network_cameras_indoor_fixed/ic-3140w | x_refsource_CONFIRMPatchProductVendor Advisory | |
| https://www.nemux.org/2018/04/24/cve-2018-8072/ | x_refsource_MISCPatchThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 26, 2018
Updated Aug 5, 2024
Reserved Mar 12, 2018
Link CVE-2018-8072
CISA Vulnrichment
Updated n/a