First published: Fri Apr 28 2017(Updated: )
HTTP header injection vulnerability in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and earlier, TS-PTCAM firmware version 1.18 and earlier, TS-PTCAM/POE firmware version 1.18 and earlier may allow a remote attackers to display false information.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Iodata Ts-ptcam/poe Firmware | <=1.18 | |
Iodata Ts-ptcam/poe | ||
Iodata Ts-ptcam | <=1.18 | |
Iodata Ts-ptcam Camera | ||
Iodata Ts-wrlc Camera Firmware | <=1.17 | |
Iodata Ts-wrlc Camera Firmware | ||
Iodata Ts-wlc2 Camera Firmware | <=1.18 | |
Iodata Ts-wlc2 Firmware | ||
Iodata Ts-wlce Camera Firmware | <=1.18 | |
Iodata Ts-wlce Firmware | ||
Iodata Ts-wptcam2 | =1.00 | |
Iodata Ts-wptcam2 Firmware | ||
Iodata Ts-wptcam Camera Firmware | <=1.18 | |
Iodata Ts-wptcam Camera Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-2111 is considered to be of medium severity due to its potential exploitation via HTTP header injection.
To fix CVE-2017-2111, update the affected firmware versions to the latest releases provided by Iodata.
CVE-2017-2111 affects various Iodata devices such as TS-WPTCAM, TS-WPTCAM2, TS-WLCE, TS-WLC2, TS-WRLC, and TS-PTCAM with specified firmware versions.
CVE-2017-2111 is classified as an HTTP header injection vulnerability, which can allow an attacker to manipulate HTTP headers.
As of now, no specific exploit details for CVE-2017-2111 have been publicly disclosed, but the vulnerability poses potential risks to affected devices.