CVE-2013-2580: High severity tp-link tl-sc3130g vulnerability
Unrestricted file upload vulnerability in cgi-bin/uploadfile in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12sign6, allows remote attackers to upload arbitrary files, then accessing it via a direct request to the file in the mnt/mtd directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2580?
CVE-2013-2580 has a high severity due to its potential for remote attackers to execute arbitrary file uploads.
How do I fix CVE-2013-2580?
To fix CVE-2013-2580, update the firmware of your TP-Link cameras to the beta firmware version LM.1.6.18P12_sign6 or later.
Which TP-Link IP camera models are affected by CVE-2013-2580?
CVE-2013-2580 affects TP-Link IP cameras including the TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly others.
What happens if CVE-2013-2580 is exploited?
If CVE-2013-2580 is exploited, attackers can upload malicious files, potentially compromising the camera and network.
Is there a known workaround for CVE-2013-2580?
There are no official workarounds for CVE-2013-2580 apart from updating to the patched firmware.