CVE-2013-0142: Medium severity qnap viostor network video recorder vulnerability
QNAP VioStor NVR devices with firmware 4.0.3, and the Surveillance Station Pro component in QNAP NAS, have a hardcoded guest account, which allows remote attackers to obtain web-server login access via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0142?
CVE-2013-0142 is considered a medium severity vulnerability due to the presence of a hardcoded guest account allowing unauthorized access.
How do I fix CVE-2013-0142?
To fix CVE-2013-0142, update the firmware of your QNAP VioStor NVR device or Surveillance Station Pro to a version that addresses this security flaw.
What devices are affected by CVE-2013-0142?
CVE-2013-0142 affects QNAP VioStor NVR devices running firmware version 4.0.3 and the Surveillance Station Pro component in QNAP NAS devices.
What is a hardcoded guest account in CVE-2013-0142?
A hardcoded guest account in CVE-2013-0142 refers to a pre-configured username and password that is embedded in the device's firmware, allowing unauthorized access.
Who can exploit CVE-2013-0142?
Remote attackers can exploit CVE-2013-0142 to gain web-server login access through unspecified vectors due to the hardcoded guest account.