CVE-2018-12675: SV3C h.264 Poe IP Camera Firmware
Medium severity, CVSS 6.1. EPSS: 3.2% chance of exploitation in the next 30 days.
The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) does not perform origin checks on URLs that the camera's web interface redirects a user to. This can be leveraged to send a user to an unexpected endpoint.
Affected products
- SV3C h.264 Poe IP Camera Firmware: version v2.3.4.2103-s50-ntd-b20170508b only; version v2.3.4.2103-s50-ntd-b20170823b only
Published 2018-10-19. Last modified 2026-06-17.