An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a weakly hashed root password. By taking this hash and cracking it, the attacker can obtain root rights on the device.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-11011 An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a weakly hashed root password. By taking this hash and cracking it, the attacker can obtain root rights on the device.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T02:39:09.901Z

Reserved: 2020-02-17T00:00:00

Link: CVE-2019-20466

cve-icon Vulnrichment

Updated: 2024-08-05T02:39:09.901Z

cve-icon NVD

Status : Modified

Published: 2021-04-02T16:15:13.193

Modified: 2024-11-21T04:38:32.987

Link: CVE-2019-20466

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses