High severity8.1NVD Advisory· Published Sep 26, 2017· Updated May 13, 2026
CVE-2017-14743
CVE-2017-14743
Description
Faleemi FSC-880 00.01.01.0048P2 devices allow unauthenticated SQL injection via the Username element in an XML document to /onvif/device_service, as demonstrated by reading the admin password.
Affected products
1- cpe:2.3:o:faleemi:fsc-880_firmware:00.01.01.0048p2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- medium.com/iotsploit/faleemi-fsc-880-multiple-security-vulnerabilities-ed1d132c2ccenvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.