CVE-2018-12920: Infoleak
Published Jun 28, 2018
·Updated
Brickstream 2300 devices allow remote attackers to obtain potentially sensitive information via a direct request for the basic.html#ipsettings or basic.html#datadelivery URI.
Affected Software
2 affected components
FLIR Brickstream 2300 Firmware
FLIR Brickstream 2300
Event History
Jun 28, 2018
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is CVE-2018-12920?
CVE-2018-12920 is a vulnerability in Brickstream 2300 devices that allows remote attackers to obtain potentially sensitive information.
2
How can remote attackers exploit CVE-2018-12920?
Remote attackers can exploit CVE-2018-12920 by making a direct request for the basic.html#ipsettings or basic.html#datadelivery URI.
3
What is the severity of CVE-2018-12920?
CVE-2018-12920 has a severity rating of 7.5 (high).
4
What software is affected by CVE-2018-12920?
Flir Brickstream 2300 Firmware is affected by CVE-2018-12920.
5
How can I fix the CVE-2018-12920 vulnerability?
To fix CVE-2018-12920, it is recommended to update the firmware of the affected Flir Brickstream 2300 devices.