CVE-2018-25139: FLIR AX8 Thermal Camera 1.32.16 Unauthenticated RTSP Stream Disclosure
FLIR AX8 Thermal Camera 1.32.16 contains an unauthenticated vulnerability that allows remote attackers to access live video streams without credentials. Attackers can directly connect to the RTSP stream using tools like VLC or FFmpeg to view and record thermal camera footage.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-25139?
CVE-2018-25139 is considered a high severity vulnerability due to its potential for unauthorized access to sensitive video data.
How do I fix CVE-2018-25139?
To mitigate CVE-2018-25139, it is recommended to update the FLIR AX8 Thermal Camera to the latest firmware version provided by the manufacturer.
What type of vulnerability is CVE-2018-25139?
CVE-2018-25139 is an unauthenticated access vulnerability that allows attackers to remotely access the thermal camera's live video stream.
Who is affected by CVE-2018-25139?
Users of the FLIR AX8 Thermal Camera running version 1.32.16 are affected by CVE-2018-25139.
What can attackers do with CVE-2018-25139?
Attackers exploiting CVE-2018-25139 can gain unauthorized access to live thermal video streams and potentially record sensitive footage.