CVE-2018-12667: SV3C h.264 Poe IP Camera Firmware

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) is affected by an improper authentication vulnerability that allows requests to be made to back-end CGI scripts without a valid session. This vulnerability could be used to read and modify the configuration. The vulnerability affects all versions.

Affected products

  • SV3C h.264 Poe IP Camera Firmware: version v2.3.4.2103-s50-ntd-b20170508b only; version v2.3.4.2103-s50-ntd-b20170823b only

Published 2018-10-19. Last modified 2026-06-17.