CVE-2020-25748
A Cleartext Transmission issue was discovered on Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339). Someone in the middle can intercept and modify the video data from the camera, which is transmitted in an unencrypted form. One can also modify responses from NTP and RTSP servers and force the camera to use the changed values.
- Rubetek rv-3406 Firmware
- = 339, 342
- CVSS 3.1
- 8.1 HIGH
- EPSS
- 0.8% (56th percentile)
- Weakness
- CWE-319
- NVD status
- Modified
- Published
- 2020-09-25
CVE-2020-25748 at NVD
1 known exploit for CVE-2020-25748
Proof-of-concept code and exploit modules indexed by Sploitus