CVE-2019-20467
Summary
| CVE | CVE-2019-20467 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-07-22 13:15:00 UTC |
| Updated | 2021-08-04 18:45:00 UTC |
| Description | An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. The device by default has a TELNET interface available (which is not advertised or functionally used, but is nevertheless available). Two backdoor accounts (root and default) exist that can be used on this interface. The usernames and passwords of the backdoor accounts are the same on all devices. Attackers can use these backdoor accounts to obtain access and execute code as root within the device. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Sannce | Smart Hd Wifi Security Camera Ean 2 950004 595317 | - | All | All | All |
| Operating System | Sannce | Smart Hd Wifi Security Camera Ean 2 950004 595317 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SANNCE-Your ideal choice for security cameras | MISC | www.sannce.com | |
| Connected Devices: Baby Monitors | MISC | www.eurofins-cybersecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.