Intro This article covers the two CVE’s we found during our thesis work earlier this year. The devices concerned are two D-Link IP cameras. In the table below you can see the names and models and respectively their hardware and software versions. Manufacturer Model Software Version Hardware Version D-Link DCS-5000L 1.05 A D-Link DCS-932L 2.17 B Table 1 – Software and Hardware Versions The setup Our testing setup was pretty simple. In this scenario we connected the two cameras, a client running MacOS and evil client running Linux to a router. For an exact setup see Figure 1. Affected http://CAMERA_IP:80 (CVE-2021-41504) http://CAMERA_IP/video.cgi (CVE-2021-41503) Reproducibility This section contains the step necessary…
-
-
Using public Wi-Fi and what can go wrong?
Working from a coffee shop is a good way to change your day to day working experience. Many people do it. Many people also take meetings in coffee shops or study there with friends. You can see where I am going with that. Are coffee stores wi-fi safe to connect to. This article will not be limited to coffee shops but they are one of the best examples in my opinion for public Wi-Fi usage. I will split the explanation into two different categories. Let’s call them Cat. 1, Cat. 2 and Cat. 3 Cat. 1 will be about when you are sitting and using the wifi in the coffee…