barni records
5 published records for vendor barni.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-798 Use of Hard-coded Credentials2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
56Plan | CVE-2019-8387Proof of concept | MASTER IPCAMERA01 3.3.4.2103 devices allow Remote Command Execution, related to the thttpd component.barni · master ip camera01 firmware | Critical9.8 | — | 55.7% | May 8, 2019 |
45Plan | CVE-2018-5726Proof of concept | MASTER IPCAMERA01 3.3.4.2103 devices allow remote attackers to obtain sensitive information via a crafted HTTP request, as demonstrated by tbarni · master ip camera01 firmware · CWE-200 | Critical9.8 | — | 19.8% | Jan 16, 2018 |
42Plan | CVE-2018-5724Proof of concept | MASTER IPCAMERA01 3.3.4.2103 devices allow Unauthenticated Configuration Download and Upload, as demonstrated by restore.cgi.barni · master ip camera01 firmware · CWE-434 | Critical9.8 | — | 11.5% | Jan 16, 2018 |
42Plan | CVE-2018-5723Proof of concept | MASTER IPCAMERA01 3.3.4.2103 devices have a hardcoded password of cat1029 for the root account.barni · master ip camera01 firmware · CWE-798 | Critical9.8 | — | 9.7% | Jan 16, 2018 |
31Monitor | CVE-2018-5725Proof of concept | MASTER IPCAMERA01 3.3.4.2103 devices allow Unauthenticated Configuration Change, as demonstrated by the port number of the web server.barni · master ip camera01 firmware · CWE-798 | High7.5 | — | 4.6% | Jan 16, 2018 |
- CVE-2019-838756Plan
MASTER IPCAMERA01 3.3.4.2103 devices allow Remote Command Execution, related to the thttpd component.
CriticalCVSS 9.8Proof of conceptEPSS 56%barni · master ip camera01 firmwareMay 8, 2019
- CVE-2018-572645Plan
MASTER IPCAMERA01 3.3.4.2103 devices allow remote attackers to obtain sensitive information via a crafted HTTP request, as demonstrated by t
CriticalCVSS 9.8Proof of conceptEPSS 20%barni · master ip camera01 firmwareJan 16, 2018
- CVE-2018-572442Plan
MASTER IPCAMERA01 3.3.4.2103 devices allow Unauthenticated Configuration Download and Upload, as demonstrated by restore.cgi.
CriticalCVSS 9.8Proof of conceptEPSS 12%barni · master ip camera01 firmwareJan 16, 2018
- CVE-2018-572342Plan
MASTER IPCAMERA01 3.3.4.2103 devices have a hardcoded password of cat1029 for the root account.
CriticalCVSS 9.8Proof of conceptEPSS 10%barni · master ip camera01 firmwareJan 16, 2018
- CVE-2018-572531Monitor
MASTER IPCAMERA01 3.3.4.2103 devices allow Unauthenticated Configuration Change, as demonstrated by the port number of the web server.
HighCVSS 7.5Proof of conceptEPSS 5%barni · master ip camera01 firmwareJan 16, 2018