Sploitus

CVE-2021-40149

3 known exploits for CVE-2021-40149

The web server of the E1 Zoom camera through 3.0.0.716 discloses its SSL private key via the root web server directory. In this way an attacker can download the entire key via the /self.key URI.

Affected products
E1 Zoom Camera
Reolink e1 Zoom Firmware
≤ 3.0.0.716
CVSS 3.1
5.9 MEDIUM
EPSS
7.4% (94th percentile)
Weakness
CWE-552
NVD status
Modified
Published
2022-07-17
CVE-2021-40149 at NVD
Authoritative description, scoring and affected products

3 known exploits for CVE-2021-40149

Proof-of-concept code and exploit modules indexed by Sploitus