CVE-2024-12984

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Dec 27, 2024
CWE ID 200
CWE ID 284

Summary

CVE-2024-12984 is a newly disclosed vulnerability that affects several Amcrest IP camera models, including IP2M-841B, IP2M-841W, IPC-IP2M-841B, IPC-IP3M-943B, IPC-IP3M-943S, IPC-IP3M-HX2B, and IPC-IPM-721S. The issue lies within the Web Interface component and specifically the /web_caps/webCapsConfig file. An attacker can manipulate this file remotely, resulting in information disclosure. This vulnerability has been made public, and there is a risk of exploitation. Regrettably, the vendor has not responded to early disclosures about this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share