CVE-2018-14770: Critical severity vivotek network camera vulnerability
Published Sep 5, 2018
·Updated
VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 1 of 2) via the ONVIF interface, (/onvif/deviceservice).
Affected Software
1 affected component
Vivotek Camera
Event History
Sep 5, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this VIVOTEK FD8177 devices vulnerability?
The vulnerability ID is CVE-2018-14770.
2
How severe is the CVE-2018-14770 vulnerability?
The severity of CVE-2018-14770 is critical with a severity value of 8.8.
3
What is the affected software for CVE-2018-14770 vulnerability?
The affected software is VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a.
4
How can attackers exploit CVE-2018-14770 vulnerability?
Attackers can exploit CVE-2018-14770 by executing arbitrary code via the ONVIF interface (/onvif/device_service).
5
Is there a fix available for the CVE-2018-14770 vulnerability?
It is recommended to refer to the VIVOTEK security advisory for information on fixing the CVE-2018-14770 vulnerability.