CVE-2020-25169
Summary
| CVE | CVE-2020-25169 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-01-26 18:15:00 UTC |
| Updated | 2021-02-01 17:35:00 UTC |
| Description | The affected Reolink P2P products do not sufficiently protect data transferred between the local device and Reolink servers. This can allow an attacker to access sensitive information, such as camera feeds. |
Risk And Classification
Problem Types: CWE-319
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Reolink | Rlc-410 | - | All | All | All |
| Hardware | Reolink | Rlc-410 | - | All | All | All |
| Operating System | Reolink | Rlc-410 Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-410 Firmware | - | All | All | All |
| Hardware | Reolink | Rlc-422 | - | All | All | All |
| Hardware | Reolink | Rlc-422 | - | All | All | All |
| Operating System | Reolink | Rlc-422 Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-422 Firmware | - | All | All | All |
| Hardware | Reolink | Rlc-423 | - | All | All | All |
| Hardware | Reolink | Rlc-423 | - | All | All | All |
| Hardware | Reolink | Rlc-423s | - | All | All | All |
| Hardware | Reolink | Rlc-423s | - | All | All | All |
| Operating System | Reolink | Rlc-423s Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-423s Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-423 Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-423 Firmware | - | All | All | All |
| Hardware | Reolink | Rlc-510a | - | All | All | All |
| Hardware | Reolink | Rlc-510a | - | All | All | All |
| Operating System | Reolink | Rlc-510a Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-510a Firmware | - | All | All | All |
| Hardware | Reolink | Rlc-520a | - | All | All | All |
| Hardware | Reolink | Rlc-520a | - | All | All | All |
| Operating System | Reolink | Rlc-520a Firmware | - | All | All | All |
| Operating System | Reolink | Rlc-520a Firmware | - | All | All | All |
| Hardware | Reolink | Rln8-410 | - | All | All | All |
| Hardware | Reolink | Rln8-410 | - | All | All | All |
| Operating System | Reolink | Rln8-410 Firmware | - | All | All | All |
| Operating System | Reolink | Rln8-410 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Reolink P2P Cameras | CISA | MISC | us-cert.cisa.gov | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 591062 Reolink P2P Cameras Multiple Vulnerabilities (icsa-21-019-02)