CVE-2018-12669: SV3C h.264 Poe IP Camera Firmware
High severity, CVSS 8.8. EPSS: 1.4% chance of exploitation in the next 30 days.
SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices allow remote authenticated users to reset arbitrary accounts via a request to web/cgi-bin/hi3510/param.cgi.
Affected products
- SV3C h.264 Poe IP Camera Firmware: version v2.3.4.2103-s50-ntd-b20170508b only; version v2.3.4.2103-s50-ntd-b20170823b only
Published 2018-10-19. Last modified 2026-06-17.