peter bassill · operator
$ cve CVE-2013-1600 JSON

CVE-2013-1600 EXPLOIT

5.3
MEDIUM · CVSS 3.1 · EPSS 18.5% (pctl 97)

Patch early

A public exploit exists.

Description

An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-2121 1.06_FR, 1.06, and 1.05_RU, DCS-2102 1.06_FR. 1.06, and 1.05_RU, which could let a malicious user obtain sensitive information.

Scoring

CVSS5.3 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS18.5% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-287
On CISA KEVno
Public exploityes
Published2020-01-28
Last modified2026-06-16

Affected (4)

VendorProduct
dlinkdcs-2102
dlinkdcs-2102 firmware
dlinkdcs-2121
dlinkdcs-2121 firmware

Public exploits

SourceTitleDate
exploit-dbD-Link IP Cameras - Multiple Vulnerabilities2013-05-01

References

→ the Explorer  ·  watch your stack  ·  NVD