Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
AVTech AVC 787 DVR Web Interface Default Credentials Vulnerability
Information
Severity
Severity
High
Family
Family
Default Accounts
CVSSv2 Base
CVSSv2 Base
7.8
CVSSv2 Vector
CVSSv2 Vector
AV:N/AC:L/Au:N/C:C/I:N/A:N
Solution Type
Solution Type
Mitigation
Created
Created
5 years ago
Modified
Modified
5 years ago
Summary
This host is running an AVTech AVC 787 DVR device and is prone to a default account authentication bypass vulnerability.
Insight
Insight
The installation of Amcrest's IP camera software is lacking a proper password configuration, which makes critical information and actions accessible for people with knowledge of the default credentials.
Affected Software
Affected Software
All AVTech AVC 787 DVR devices.
Detection Method
Detection Method
Sends crafted data via an HTTP POST request and checks whether it is possible to login or not.
Solution
Solution
Change the passwords for user and admin access.