CVE Feed

    Dashboard / CVE / CVE-2017-7648

    CVE-2017-7648

    Foscam networked devices use the same hardcoded SSL private key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

    Published:Apr 10, 2017
    Last Modified:Apr 20, 2025
    EPS:Apr 10, 2017
    EPSS Score:0.00621
    CVSS Score:8.1

    Affected Products

    Vendor
    Foscam
    Product
    C1
    Vendor
    Foscam
    Product
    C1 Lite
    Vendor
    Foscam
    Product
    C2
    Vendor
    Foscam
    Product
    Fi9800xe
    Vendor
    Foscam
    Product
    Fi9826p
    Vendor
    Foscam
    Product
    Fi9828p
    Vendor
    Foscam
    Product
    Fi9851p
    Vendor
    Foscam
    Product
    Fi9853ep
    Vendor
    Foscam
    Product
    Fi9901ep
    Vendor
    Foscam
    Product
    Fi9903p
    Vendor
    Foscam
    Product
    Fi9928p
    Vendor
    Foscam
    Product
    R2

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High