First published: Tue Jul 03 2018(Updated: )
In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, a buffer overflow vulnerability exist in cgi program "set".
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Imps110-1e | <3.29.69 | |
Schneider-electric Imps110-1 Firmware | ||
Schneider-electric Imps110-1e | <3.29.69 | |
Schneider-electric Imps110-1e Firmware | ||
Schneider Electric IMPS110-1ER | <3.29.69 | |
Schneider-electric Imps110-1er Firmware | ||
Schneider-electric Ibps110-1er Firmware | <3.29.69 | |
Schneider-electric Ibps110-1er Firmware | ||
Schneider Electric IMP1110-1E | <3.29.69 | |
Schneider Electric IMP1110-1 | ||
Schneider Electric IMP1110-1E | <3.29.69 | |
Schneider Electric IMP1110-1E | ||
Schneider Electric IMP1110-1 | <3.29.69 | |
Schneider Electric IMP1110-1 | ||
Schneider Electric IBP1110-1ER | <3.29.69 | |
Schneider-electric Ibp1110-1er Firmware | ||
Schneider-electric Imp219-1 Firmware | <3.29.69 | |
Schneider-electric Imp219-1e Firmware | ||
Schneider-electric Imp219-1e | <3.29.69 | |
Schneider-electric Imp219-1e Firmware | ||
Schneider-electric Imp219-1er Firmware | <3.29.69 | |
Schneider-electric Imp219-1 | ||
Schneider-electric Ibp219-1er | <3.29.69 | |
Schneider-electric Ibp219-1er Firmware | ||
Schneider Electric Imp319-1er | <3.29.69 | |
Schneider-electric Imp319-1 Firmware | ||
Schneider-electric Imp319-1e Firmware | <3.29.69 | |
Schneider-electric Imp319-1e Firmware | ||
Schneider Electric Imp319-1er | <3.29.69 | |
Schneider Electric Imp319-1er | ||
Schneider-electric IBP319-1ER | <3.29.69 | |
Schneider-electric IBP319-1ER | ||
Schneider Electric IMP519-1 | <3.29.69 | |
Schneider-electric Imp519-1 Firmware | ||
Schneider-electric Imp519-1e Firmware | <3.29.69 | |
Schneider-electric Imp519-1e Firmware | ||
Schneider-electric Imp519-1er Firmware | <3.29.69 | |
Schneider-electric Imp519-1er Firmware | ||
Schneider Electric IBP519-1ER | <3.29.69 | |
Schneider Electric IBP519-1ER |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7780 is classified as a high severity vulnerability due to the potential for remote code execution resulting from the buffer overflow.
To mitigate CVE-2018-7780, update the firmware of the affected Schneider Electric Pelco Sarix cameras to version 3.29.69 or later.
CVE-2018-7780 affects Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69.
CVE-2018-7780 is a buffer overflow vulnerability that can be exploited through the "set" CGI program.
As of the current knowledge, there are no confirmed active exploits for CVE-2018-7780, but it is advisable to apply the patch to prevent potential attacks.