CVE-2017-7648
HIGH 8.1EPSS 1.7%
Foscam networked devices use the same hardcoded SSL private key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.
- CVSS v3.0
- 8.1 HIGH
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N - EPSS
- 1.68% chance of exploitation in the next 30 days, 75th percentile
- Published
- 2017-04-10
- Updated
- 2024-09-16
Proof-of-concept exploits (1)
- notmot/CVE-2017-7648.0★ · 2017-04-10