Vulnerabilities (CVE)

Filtered by vendor Mobotix Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30018 1 Mobotix 1 Mxcontrolcenter 2022-06-01 6.5 MEDIUM 8.8 HIGH
Mobotix Control Center (MxCC) through 2.5.4.5 has Insufficiently Protected Credentials, Storing Passwords in a Recoverable Format via the MxCC.ini config file. The credential storage method in this software enables an attacker/user of the machine to gain admin access to the software and gain access to recordings/recording locations.
CVE-2019-7673 1 Mobotix 2 S14, S14 Firmware 2021-07-21 5.0 MEDIUM 7.5 HIGH
An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. Administrator Credentials are stored in the 13-character DES hash format.
CVE-2019-7675 1 Mobotix 2 S14, S14 Firmware 2020-08-24 5.0 MEDIUM 7.5 HIGH
An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. The default management application is delivered over cleartext HTTP with Basic Authentication, as demonstrated by the /admin/index.html URI.
CVE-2019-12502 1 Mobotix 2 S14, S14 Firmware 2019-05-31 9.3 HIGH 8.8 HIGH
There is a lack of CSRF countermeasures on MOBOTIX S14 MX-V4.2.1.61 cameras, as demonstrated by adding an admin account via the /admin/access URI.