Schneider Electric Pelco Sarix/Spectra Cameras CSRF Enable SSH Root Access
Posted by deepcore on July 11, 2017 – 9:00 pm
Pelco IP cameras suffer from a cross site request forgery vulnerability. The application interface allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. This can be exploited to perform certain actions with administrative privileges if a logged-in user visits a malicious web site.
Post a reply
You must be logged in to post a comment.