CVE-2013-3313: Loftek Nexus 543 Firmware
High severity, CVSS 7.5. EPSS: 2.6% chance of exploitation in the next 30 days.
The Loftek Nexus 543 IP Camera stores passwords in cleartext, which allows remote attackers to obtain sensitive information via an HTTP GET request to check_users.cgi. NOTE: cleartext passwords can also be obtained from proc/kcore when leveraging the directory traversal vulnerability in CVE-2013-3311.
Affected products
- Loftek Nexus 543 Firmware: affected versions not specified
Published 2019-11-21. Last modified 2026-06-16.