CVE Feed

    Dashboard / CVE / CVE-2013-1599

    CVE-2013-1599

    A Command Injection vulnerability exists in the /var/www/cgi-bin/rtpd.cgi script in D-Link IP Cameras DCS-3411/3430 firmware 1.02, DCS-5605/5635 1.01, DCS-1100L/1130L 1.04, DCS-1100/1130 1.03, DCS-1100/1130 1.04_US, DCS-2102/2121 1.05_RU, DCS-3410 1.02, DCS-5230 1.02, DCS-5230L 1.02, DCS-6410 1.00, DCS-7410 1.00, DCS-7510 1.00, and WCS-1100 1.02, which could let a remote malicious user execute arbitrary commands through the camera’s web interface.

    Published:Jan 28, 2020
    Last Modified:Nov 21, 2024
    EPS:Jan 28, 2020
    EPSS Score:0.92285
    CVSS Score:9.8

    Affected Products

    Vendor
    Dlink
    Product
    Dcs-1100
    Vendor
    Dlink
    Product
    Dcs-1100 Firmware
    Vendor
    Dlink
    Product
    Dcs-1100l
    Vendor
    Dlink
    Product
    Dcs-1100l Firmware
    Vendor
    Dlink
    Product
    Dcs-1130
    Vendor
    Dlink
    Product
    Dcs-1130 Firmware
    Vendor
    Dlink
    Product
    Dcs-1130l
    Vendor
    Dlink
    Product
    Dcs-1130l Firmware
    Vendor
    Dlink
    Product
    Dcs-2102
    Vendor
    Dlink
    Product
    Dcs-2102 Firmware
    Vendor
    Dlink
    Product
    Dcs-2121
    Vendor
    Dlink
    Product
    Dcs-2121 Firmware
    Vendor
    Dlink
    Product
    Dcs-3410
    Vendor
    Dlink
    Product
    Dcs-3410 Firmware
    Vendor
    Dlink
    Product
    Dcs-3411
    Vendor
    Dlink
    Product
    Dcs-3411 Firmware
    Vendor
    Dlink
    Product
    Dcs-3430
    Vendor
    Dlink
    Product
    Dcs-3430 Firmware
    Vendor
    Dlink
    Product
    Dcs-5230
    Vendor
    Dlink
    Product
    Dcs-5230 Firmware
    Vendor
    Dlink
    Product
    Dcs-5230l
    Vendor
    Dlink
    Product
    Dcs-5230l Firmware
    Vendor
    Dlink
    Product
    Dcs-5605
    Vendor
    Dlink
    Product
    Dcs-5605 Firmware
    Vendor
    Dlink
    Product
    Dcs-5635
    Vendor
    Dlink
    Product
    Dcs-5635 Firmware
    Vendor
    Dlink
    Product
    Dcs-6410
    Vendor
    Dlink
    Product
    Dcs-6410 Firmware
    Vendor
    Dlink
    Product
    Dcs-7410
    Vendor
    Dlink
    Product
    Dcs-7410 Firmware
    Vendor
    Dlink
    Product
    Dcs-7510
    Vendor
    Dlink
    Product
    Dcs-7510 Firmware
    Vendor
    Dlink
    Product
    Wcs-1100
    Vendor
    Dlink
    Product
    Wcs-1100 Firmware

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High