CVE-2013-3539: Ovislink Airlive WL2600CAM

Medium severity, CVSS 6.8. EPSS: 8.8% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in the command/user.cgi in Sony SNC CH140, SNC CH180, SNC CH240, SNC CH280, SNC DH140, SNC DH140T, SNC DH180, SNC DH240, SNC DH240T, SNC DH280, and possibly other camera models allows remote attackers to hijack the authentication of administrators for requests that add users.

Affected products

  • Ovislink Airlive WL2600CAM: affected versions not specified
  • Sony Snc CH140: affected versions not specified
  • Sony Snc CH180: affected versions not specified
  • Sony Snc CH240: affected versions not specified
  • Sony Snc CH280: affected versions not specified
  • Sony Snc DH140: affected versions not specified
  • Sony Snc DH140T: affected versions not specified
  • Sony Snc DH180: affected versions not specified
  • Sony Snc DH240: affected versions not specified
  • Sony Snc DH240T: affected versions not specified
  • Sony Snc DH280: affected versions not specified

Published 2013-10-01. Last modified 2026-06-16.