← back
CVE-2017-8225observed exploitation

CVE-2017-8225

72Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 35%
from disclosure to weapon0 days
Published on NVDApr 25
1st PoCMar 30
VulnCheck+177d
exploitation probability
35%top 2% of all CVEs
observed exploitation
yesVulnCheck
6 public exploit(s)
On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files (containing credentials) is not correctly checked. An attacker can bypass authentication by providing an empty loginuse parameter and an empty loginpas parameter in the URI.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.