Compro Technology IP Camera – RTSP stream disclosure (Unauthenticated)

  • 作者: icekam
    日期: 2021-09-02
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/50251/
  • # Exploit Title: Compro Technology IP Camera - RTSP stream disclosure (Unauthenticated)
    # Date: 2021-09-30
    # Exploit Author: icekam,xiao13,Rainbow,tfsec
    # Software Link: http://www.comprotech.com.hk/
    # Version: Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, TN540
    # CVE : CVE-2021-40379
    
    Some devices have unauthorized access to rstp, which can lead to the
    leakage of surveillance video stream information.
    
    Payload:rstp://.../medias2
    
    please refer to:
    https://github.com/icekam/0day/blob/main/Compro-Technology-Camera-has-multiple-vulnerabilities.md