ONVIF Stream URI

info Nessus Plugin ID 104275

Synopsis

The remote service allows unauthenticated users to retrieve the video stream URI

Description

Nessus was able to retrieve the remote devices video stream URI(s) by sending GetProfiles and GetStreamUri ONVIF requests.

Solution

Enable authentication or IP filtering if possible. Disable ONVIF if it isn't in use.

See Also

https://www.onvif.org/

Plugin Details

Severity: Info

ID: 104275

File Name: onvif_get_stream_uri.nasl

Version: Revision: 1.1

Type: remote

Family: Misc.

Published: 10/31/2017

Updated: 10/31/2017

Supported Sensors: Nessus

Vulnerability Information

Required KB Items: onvif/present