CVE Database
/

CVE-2008-5674

Back to search

CVE-2008-5674

Published: Dec 18, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple array index errors in the HTTP server in Darkwet Network webcamXP 3.72.440.0 and earlier and beta 4.05.280 and earlier allow remote attackers to cause a denial of service (device crash) and read portions of memory via (1) an invalid camnum parameter to the pocketpc component and (2) an invalid id parameter to the show_gallery_pic component.

VendorProductVersions

n/a

n/a

affected
n/a

References

27875
vdb-entry
x_refsource_BID
4788
third-party-advisory
x_refsource_SREASON
42929
vdb-entry
x_refsource_OSVDB
29007
third-party-advisory
x_refsource_SECUNIA
42927
vdb-entry
x_refsource_OSVDB
42928
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now