CVE-2024-47789 - CVE House
Back to Database
Status published High CVE-2024-47789

Credential Leakage Vulnerability

Vulnerability Description

** UNSUPPORTED WHEN ASSIGNED ** This vulnerability exists in D3D Security IP Camera D8801 due to usage of weak authentication scheme of the HTTP header protocol where authorization tag contain a Base-64 encoded username and password. A remote attacker could exploit this vulnerability by crafting a HTTP packet leading to exposure of user credentials of the targeted device. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-47789

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • This vulnerability is reported by Priyanka R. Chaudhary, BITS Pilani, Hyderabad.

Affected Vendor

D3D Security

View all reports →

Affected Software

IP Camera D8801
Vulnerable Versions:
All versions

Timeline

Official Publish: October 4th, 2024
Last Modified: October 14th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)