← Back to browse · API

CVE-2017-2877

Severity
CRITICAL
CVSS
9.8
EPSS
0.01902
Risk score
39.87
CISA KEV
No
PoC
No
Published
2018-09-19
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2017-12018, GHSA-98WP-25PH-MF7R
Products
Foscam:Foscam C1 Indoor HD Camera Foscam Indoor IP Camera C1 Series,System Firmware Version: 1.9.3.18,Application Firmware Version: 2.52.2.43,Plug-In Version: 3.3.0.26
Sources
euvd EUVD-2017-12018

Description

A missing error check exists in the Multi-Camera interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.43. A specially crafted request on port 10001 could allow an attacker to reset the user accounts to factory defaults, without authentication.

References