Remote File Download Vulnerability in CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR Devices

Remote File Download Vulnerability in CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR Devices

CVE-2018-10676 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR devices allow remote attackers to download a file and obtain sensitive credential information via a direct request for the download.rsp URI.

Learn more about our Web Application Penetration Testing UK.