Critical severity9.8NVD Advisory· Published Dec 16, 2017· Updated May 13, 2026
CVE-2017-3185
CVE-2017-3185
Description
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC have a web application that uses the GET method to process requests that contain sensitive information such as user account name and password, which can expose that information through the browser's history, referrers, web logs, and other sources.
Affected products
1- ACTi Corporation/ACTi D, B, I, and E series camerasv5Range: A1D-500-V6.11.31-AC
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/96720/infonvdThird Party AdvisoryVDB Entry
- twitter.com/Hfuhs/status/839252357221330944nvdPress/Media CoverageThird Party Advisory
- twitter.com/hack3rsca/status/839599437907386368nvdPress/Media CoverageThird Party Advisory
- www.kb.cert.org/vuls/id/355151nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.