Files
CVEs-PoC/2021/CVE-2021-31793.md
T
2024-05-25 21:48:12 +02:00

18 lines
804 B
Markdown

### [CVE-2021-31793](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-31793)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
An issue exists on NightOwl WDB-20-V2 WDB-20-V2_20190314 devices that allows an unauthenticated user to gain access to snapshots and video streams from the doorbell. The binary app offers a web server on port 80 that allows an unauthenticated user to take a snapshot from the doorbell camera via the /snapshot URI.
### POC
#### Reference
- https://gist.github.com/tj-oconnor/16a4116050bbcb4717315f519b944f1f
#### Github
No PoCs found on GitHub currently.