VendorsZaviof312a_firmwareany version
Vulnerabilities

Zavio F312A Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2013-2568
A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 via the ap parameter to /cgi-bin/mft/wireless_mft.cgi, which could let a remote malicious user execute arbitrary code.
Published 2020-01-29 · Modified
10.01 PoCEPSS 0.485
CVE-2013-2570
A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to the sub_C8C8 function of the binary /opt/cgi/view/param, which could let a remove malicious user execute arbitrary code.
Published 2020-01-29 · Modified
9.81 PoCEPSS 0.266
CVE-2013-2569
A Security Bypass vulnerability exists in Zavio IP Cameras through 1.6.3 because the RTSP protocol authentication is disabled by default, which could let a malicious user obtain unauthorized access to the live video stream.
Published 2020-01-29 · Modified
7.51 PoCEPSS 0.310
CVE-2013-2567
An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through 1.6.03 due to a hardcoded admin account found in boa.conf, which lets a remote malicious user obtain sensitive information.
Published 2020-01-29 · Modified
7.51 PoCEPSS 0.146