Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 28 Nov 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Nov 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Astak
Astak cm-818t3 |
|
| Vendors & Products |
Astak
Astak cm-818t3 |
Wed, 26 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Astak CM-818T3 2.4GHz wireless security surveillance cameras contain an unauthenticated configuration disclosure vulnerability in the /web/cgi-bin/hi3510/backup.cgi endpoint. The endpoint permits remote download of a compressed configuration backup without requiring authentication or authorization. The exposed backup may include administrative credentials and other sensitive device settings, enabling an unauthenticated remote attacker to obtain information that could facilitate further compromise of the camera or connected network. | |
| Title | Astak CM-818T3 Unauthenticated Configuration Disclosure | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-11-28T19:26:29.664Z
Reserved: 2025-10-30T15:45:57.764Z
Link: CVE-2020-36873
Updated: 2025-11-28T19:26:21.914Z
Status : Awaiting Analysis
Published: 2025-11-26T23:15:47.397
Modified: 2025-12-01T15:39:33.110
Link: CVE-2020-36873
No data.
OpenCVE Enrichment
Updated: 2025-11-28T08:51:37Z