CVE-2024-5096 is an information disclosure vulnerability found in Hipcam Devices, specifically affecting the MAC Address Handler component via the /log/wifi.mac file. This vulnerability allows for remote information disclosure due to improper handling of MAC addresses. With a CVSS score of 5.3 (Medium), the attack requires no authentication or user interaction and has low impact on confidentiality. The exploit has been publicly disclosed, but there is no evidence of active exploitation in the wild, nor are there any known Metasploit or Nuclei modules. Despite public disclosure, community discussion and media coverage are currently absent, and it is not listed in the CISA KEV catalog. The vendor has not responded to disclosure attempts.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Hipcam | Device | 20240511CNA affected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.