The web server of the E1 Zoom camera through 3.0.0.716 discloses its SSL private key via the root web server directory. In this way an attacker can download the entire key via the /self.key URI.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-07-17T21:36:27
Updated: 2024-08-04T02:27:31.522Z
Reserved: 2021-08-27T00:00:00
Link: CVE-2021-40149
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-17T22:15:08.683
Modified: 2024-11-21T06:23:40.130
Link: CVE-2021-40149
Redhat
No data.