CVE-2019-25247

Beward N100 H.264 VGA IP Camera M2.1.6 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without proper request validation. Attackers can craft a malicious web page with a hidden form to add an admin user by tricking a logged-in user into submitting the form.
Configurations

No configuration.

History

24 Dec 2025, 21:16

Type Values Removed Values Added
References () https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5510.php - () https://www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5510.php -

24 Dec 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-24 20:15

Updated : 2025-12-29 15:58


NVD link : CVE-2019-25247

Mitre link : CVE-2019-25247

CVE.ORG link : CVE-2019-25247


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)