Hard-Coded Password/Backdoor In Foscam/Related Brands

From an F-Secure Report on Foscam vulnerability discovery:

F-Secure has identified 18 different vulnerabilities in the Opticam i5. Many of these have also been found in the Foscam C2. Some of the vulnerabilities are very severe and easily exploited by an attacker.

F-Secure knows of at least 14 other brands that market Foscam-made devices:

  • Chacon
  • Thomson
  • 7links
  • Opticam
  • Netis
  • Turbox
  • Novodio
  • Ambientcam
  • Nexxt
  • Technaxx
  • Qcam
  • Ivue
  • Ebode
  • Sab

None of these are "security industry" brands that would be of high interest to IPVM readers, so we did not do a report on this specific set of vulnerabilities, but I wanted to post it here so that members are at least aware.

Login to read this IPVM discussion.
Why do I need to log in?
IPVM conducts unique testing and research funded by member's payments enabling us to offer the most independent, accurate and in-depth information.

***** **** *** ******** * ****** (*** *** *********, **** test *** ***** *** *******-**** ****** ****** ***'*?) *** ****** ask ** ******* ***** *** ** **** **** *********. ** the ****** ***'* ****** **** **'* ***. ** **** ***, it's ***. ** **** **** *** ***** **, **'* ***. This ** (** *****) ** **** *** ******.

**** ** ******* ****-****, ***** "*** ***" ******* *** "******'*" see ** * ************ ************ *** **********.

***** *** * *** ** ****** **** ****** =)

*****://***.*******.***/**/******/******/