Sploitus

CVE-2020-25749

1 known exploit for CVE-2020-25749

The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be disabled and this password cannot be changed via standard functionality.

Affected products
Rv-3406, Rv-3409, Rv-3411
Rubetek rv-3406 Firmware
= 339, 342
CVSS 2.0
10.0 HIGH
CVSS 3.1
9.8 CRITICAL
EPSS
3.1% (87th percentile)
Weakness
CWE-798
NVD status
Modified
Published
2020-09-25
CVE-2020-25749 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2020-25749

Proof-of-concept code and exploit modules indexed by Sploitus