Description
Foscam Video Management System 1.1.4.9 contains a denial of service vulnerability in the username input field that allows attackers to crash the application. Attackers can overwrite the username with a 520-byte buffer of repeated 'A' characters to trigger an application crash during device login.
Problem types
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
Credits
chuyreds
References
www.exploit-db.com/exploits/47671 (ExploitDB-47671)
www.foscam.es/ (Foscam Official Homepage)
www.vulncheck.com/...ement-system-username-denial-of-service (VulnCheck Advisory: Foscam Video Management System 1.1.4.9 - 'Username' Denial of Service)