CVE Feed

    Dashboard / CVE / CVE-2013-3539

    CVE-2013-3539

    Cross-site request forgery (CSRF) vulnerability in the command/user.cgi in Sony SNC CH140, SNC CH180, SNC CH240, SNC CH280, SNC DH140, SNC DH140T, SNC DH180, SNC DH240, SNC DH240T, SNC DH280, and possibly other camera models allows remote attackers to hijack the authentication of administrators for requests that add users.

    Published:Oct 1, 2013
    Last Modified:Apr 11, 2025
    EPS:Oct 1, 2013
    EPSS Score:0.01079
    CVSS Score:6.8

    Affected Products

    Vendor
    Ovislink
    Product
    Airlive Wl2600cam
    Vendor
    Sony
    Product
    Snc Ch140
    Vendor
    Sony
    Product
    Snc Ch180
    Vendor
    Sony
    Product
    Snc Ch240
    Vendor
    Sony
    Product
    Snc Ch280
    Vendor
    Sony
    Product
    Snc Dh140
    Vendor
    Sony
    Product
    Snc Dh140t
    Vendor
    Sony
    Product
    Snc Dh180
    Vendor
    Sony
    Product
    Snc Dh240
    Vendor
    Sony
    Product
    Snc Dh240t
    Vendor
    Sony
    Product
    Snc Dh280

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High