CVE-2013-2578 Information

Description

cgi-bin/admin/servetest in TP-Link IP Cameras TL-SC3130 TL-SC3130G TL-SC3171 TL-SC3171G and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the ServerName parameter and (2) other unspecified parameters.

Reference

http://www.coresecurity.com/advisories/multiple-vulnerabilities-tp-link-tl-sc3171-ip-cameras

Share on: