peter bassill · operator
$ cve CVE-2017-5174 JSON

CVE-2017-5174 EXPLOIT

9.8
CRITICAL · CVSS 3.0 · EPSS 52.3% (pctl 99)

Patch early

A public exploit exists.

Description

An Authentication Bypass issue was discovered in Geutebruck IP Camera G-Cam/EFD-2250 Version 1.11.0.12. An authentication bypass vulnerability has been identified. The existing file system architecture could allow attackers to bypass the access control that may allow remote code execution.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS52.29% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-288
On CISA KEVno
Public exploityes
Published2017-05-19
Last modified2026-06-17

Affected (2)

VendorProduct
geutebruckip camera g-cam efd-2250
geutebruckip camera g-cam efd-2250 firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD