Description
Denver SHC-150 Smart Wifi Camera contains a hardcoded telnet credential vulnerability that allows unauthenticated attackers to access a Linux shell. Attackers can connect to port 23 using the default credential to execute arbitrary commands on the camera's operating system.
Problem types
Product status
Credits
Ivan Nikolsky (enty8080)
References
www.exploit-db.com/exploits/50160 (ExploitDB-50160)
old.denver.eu/...me-security/ip-camera-/indoor/c-1024/c-1245 (Official Product Homepage)
www.vulncheck.com/...ra-shc-telnet-remote-code-execution-rce (VulnCheck Advisory: Denver Smart Wifi Camera SHC-150 - 'Telnet' Remote Code Execution (RCE))