CVE-2013-2572: High severity tp-link tl-sc3130g firmware vulnerability
Published Jan 29, 2020
·Updated
A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 due to default hard-coded credentials for the administrative Web interface, which could let a malicious user obtain unauthorized access to CGI files.
Affected Software
8 affected components
TP-Link Tl-sc 3130 Firmware<=1.6.18p12
TP-Link TL-SC 3130
TP-Link Tl-sc 3130g Firmware<=1.6.18p12
TP-Link TL-SC 3130G
TP-Link Tl-sc 3171g Firmware<=1.6.18p12
TP-Link Tl-sc 3171g
TP-Link Tl-sc 4171g Firmware<=1.6.18p12
TP-Link Tl-sc 4171g
Remediation
Patch Available
Event History
Jan 29, 2020
CVE Published
via MITRE·06:04 PM
Data Sourced
via MITRE·06:04 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this security bypass vulnerability?
The vulnerability ID of this security bypass vulnerability is CVE-2013-2572.
2
Which TP-LINK IP Camera models are affected by this vulnerability?
TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, and 4171G are affected by this vulnerability.
3
What is the severity rating of CVE-2013-2572?
The severity rating of CVE-2013-2572 is high, with a severity value of 7.5.
4
How does this vulnerability occur?
This vulnerability occurs due to default hard-coded credentials for the administrative Web interface.
5
What is the risk of this vulnerability?
The risk of this vulnerability is that a malicious user could obtain unauthorized access to CGI files.