CVE-2012-4046 Information

Description

The D-Link DCS-932L camera with firmware 1.02 allows remote attackers to discover the password via a UDP broadcast packet as demonstrated by running the D-Link Setup Wizard and reading the _paramR[\P] value.

Reference

http://seclists.org/bugtraq/2012/Dec/98 http://www.fishnetsecurity.com/6labs/blog/password-disclosure-d-link-surveillance-cameras-cve-2012-4046

Share on: