← Back to CVE List

CVE-2018-12666

Published: 2018-10-19T22:29Z
Last Modified: 2024-11-21T03:45Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B devices improperly identifies users only by the authentication level sent in the cookies, which allow remote attackers to bypass authentication and gain administrator access by setting the authLevel cookie to 255. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt