CVE-2018-6831

Exp

The setSystemTime function in Foscam Cameras C1 Lite V3, and C1 V3 with firmware 2.82.2.33 and earlier, FI9800P V3, FI9803P V4, FI9851P V3, and FI9853EP V2 2.84.2.33 and earlier, FI9816P V3, FI9821EP V2, FI9821P V3, FI9826P V3, and FI9831P V3 2.81.2.33 and earlier, C1, C1 V2, C1 Lite, and C1 Lite V2 2.52.2.47 and earlier, FI9800P, FI9800P V2, FI9803P V2, FI9803P V3, and FI9851P V2 2.54.2.47 and earlier, FI9815P, FI9815P V2, FI9816P, and FI9816P V2, 2.51.2.47 and earlier, R2 and R4 2.71.1.59 and earlier, C2 and FI9961EP 2.72.1.59 and earlier, FI9900EP, FI9900P, and FI9901EP 2.74.1.59 and earlier, FI9928P 2.74.1.58 and earlier, FI9803EP and FI9853EP 2.22.2.31 and earlier, FI9803P and FI9851P 2.24.2.31 and earlier, FI9821P V2, FI9826P V2, FI9831P V2, and FI9821EP 2.21.2.31 and earlier, FI9821W V2, FI9831W, FI9826W, FI9821P, FI9831P, and FI9826P 2.11.1.120 and earlier, FI9818W V2 2.13.2.120 and earlier, FI9805W, FI9804W, FI9804P, FI9805E, and FI9805P 2.14.1.120 and earlier, FI9828P, and FI9828W 2.13.1.120 and earlier, and FI9828P V2 2.11.1.133 and earlier allows remote authenticated users to execute arbitrary commands via a ';' in the ntpServer argument. NOTE: this issue exists because of an incomplete fix for CVE-2017-2849.

Published: 2018-07-09 Last update: 2024-11-21 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2018-6831 is rated High Exploit Risk (75.2/100): CVSS High severity, with medium exploitation likelihood (EPSS 2.69%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). EPSS rose +1.25% over the last day, indicating growing attacker interest. Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2018-6831

EDB-ID Source Kind Published Link
nvd_ref exploit_tag Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2018-6831

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-06 1.44% 2.69% +1.25%
2 2025-11-21 3.45% 1.44% -2.01%
3 2025-11-18 3.45%

Full EPSS history (13 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2018-6831

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
7.2 3.0 HIGH
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:H)
They need powerful rights—admin, root, or similar—before this pays off.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:H)
Serious risk that confidential data gets exposed in a big way.
Integrity (I:H)
They could widely tamper with or forge data—trust in the data is badly hurt.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
1.2 5.9 [email protected]
9.0 2.0 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:S)
A single authentication is required.
Confidentiality impact (C:C)
Complete confidentiality impact.
Integrity impact (I:C)
Complete integrity impact.
Availability impact (A:C)
Complete availability impact.
8.0 10.0 [email protected]

Weakness enumeration for CVE-2018-6831

Affected software / configurations for CVE-2018-6831

Vendor Product Version Raw CPE
foscam c1_lite_firmware <= 2.82.2.33 cpe:2.3:o:foscam:c1_lite_firmware:*:*:*:*:*:*:*:*
foscam c1_firmware <= 2.82.2.33 cpe:2.3:o:foscam:c1_firmware:*:*:*:*:*:*:*:*
foscam fi9800p_firmware <= 2.81.2.33 cpe:2.3:o:foscam:fi9800p_firmware:*:*:*:*:*:*:*:*
foscam fi9821ep_firmware <= 2.81.2.33 cpe:2.3:o:foscam:fi9821ep_firmware:*:*:*:*:*:*:*:*
foscam fi9821p_firmware <= 2.81.2.33 cpe:2.3:o:foscam:fi9821p_firmware:*:*:*:*:*:*:*:*
foscam fi9826p_firmware <= 2.81.2.33 cpe:2.3:o:foscam:fi9826p_firmware:*:*:*:*:*:*:*:*
foscam fi9831p_firmware <= 2.81.2.33 cpe:2.3:o:foscam:fi9831p_firmware:*:*:*:*:*:*:*:*
foscam c1_firmware <= 2.52.2.47 cpe:2.3:o:foscam:c1_firmware:*:*:*:*:*:*:*:*
foscam c1_lite_firmware <= 2.52.2.47 cpe:2.3:o:foscam:c1_lite_firmware:*:*:*:*:*:*:*:*
foscam fi9800p_firmware <= 2.54.2.47 cpe:2.3:o:foscam:fi9800p_firmware:*:*:*:*:*:*:*:*
foscam fi9803p_firmware <= 2.54.2.47 cpe:2.3:o:foscam:fi9803p_firmware:*:*:*:*:*:*:*:*
foscam fi9851p_firmware <= 2.54.2.47 cpe:2.3:o:foscam:fi9851p_firmware:*:*:*:*:*:*:*:*
foscam fi9815p_firmware <= 2.51.2.47 cpe:2.3:o:foscam:fi9815p_firmware:*:*:*:*:*:*:*:*
foscam fi9816p_firmware <= 2.51.2.47 cpe:2.3:o:foscam:fi9816p_firmware:*:*:*:*:*:*:*:*
foscam r2_firmware <= 2.71.1.59 cpe:2.3:o:foscam:r2_firmware:*:*:*:*:*:*:*:*
foscam r4_firmware <= 2.71.1.59 cpe:2.3:o:foscam:r4_firmware:*:*:*:*:*:*:*:*
foscam c2_firmware <= 2.72.1.59 cpe:2.3:o:foscam:c2_firmware:*:*:*:*:*:*:*:*
foscam fi9961ep_firmware <= 2.72.1.59 cpe:2.3:o:foscam:fi9961ep_firmware:*:*:*:*:*:*:*:*
foscam fi9900ep_firmware <= 2.74.1.59 cpe:2.3:o:foscam:fi9900ep_firmware:*:*:*:*:*:*:*:*
foscam fi9900p_firmware <= 2.74.1.59 cpe:2.3:o:foscam:fi9900p_firmware:*:*:*:*:*:*:*:*
foscam fi9901ep_firmware <= 2.74.1.59 cpe:2.3:o:foscam:fi9901ep_firmware:*:*:*:*:*:*:*:*
foscam fi9928p_firmware <= 2.74.1.58 cpe:2.3:o:foscam:fi9928p_firmware:*:*:*:*:*:*:*:*
foscam fi9803ep_firmware <= 2.22.2.31 cpe:2.3:o:foscam:fi9803ep_firmware:*:*:*:*:*:*:*:*
foscam fi9853ep_firmware <= 2.22.2.31 cpe:2.3:o:foscam:fi9853ep_firmware:*:*:*:*:*:*:*:*
foscam fi9803p_firmware <= 2.24.2.31 cpe:2.3:o:foscam:fi9803p_firmware:*:*:*:*:*:*:*:*
foscam fi9851p_firmware <= 2.24.2.31 cpe:2.3:o:foscam:fi9851p_firmware:*:*:*:*:*:*:*:*
foscam fi9821p_firmware <= 2.21.2.31 cpe:2.3:o:foscam:fi9821p_firmware:*:*:*:*:*:*:*:*
foscam fi9826p_firmware <= 2.21.2.31 cpe:2.3:o:foscam:fi9826p_firmware:*:*:*:*:*:*:*:*
foscam fi9831p_firmware <= 2.21.2.31 cpe:2.3:o:foscam:fi9831p_firmware:*:*:*:*:*:*:*:*
foscam fi9821ep_firmware <= 2.21.2.31 cpe:2.3:o:foscam:fi9821ep_firmware:*:*:*:*:*:*:*:*
foscam fi9821w_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9821w_firmware:*:*:*:*:*:*:*:*
foscam fi9831w_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9831w_firmware:*:*:*:*:*:*:*:*
foscam fi9826w_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9826w_firmware:*:*:*:*:*:*:*:*
foscam fi9821p_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9821p_firmware:*:*:*:*:*:*:*:*
foscam fi9831p_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9831p_firmware:*:*:*:*:*:*:*:*
foscam fi9826p_firmware <= 2.11.1.120 cpe:2.3:o:foscam:fi9826p_firmware:*:*:*:*:*:*:*:*
foscam fi9818w_firmware <= 2.13.2.120 cpe:2.3:o:foscam:fi9818w_firmware:*:*:*:*:*:*:*:*
foscam fi9805w_firmware <= 2.14.1.120 cpe:2.3:o:foscam:fi9805w_firmware:*:*:*:*:*:*:*:*
foscam fi9804w_firmware <= 2.14.1.120 cpe:2.3:o:foscam:fi9804w_firmware:*:*:*:*:*:*:*:*
foscam fi9804p_firmware <= 2.14.1.120 cpe:2.3:o:foscam:fi9804p_firmware:*:*:*:*:*:*:*:*
foscam fi9805e_firmware <= 2.14.1.120 cpe:2.3:o:foscam:fi9805e_firmware:*:*:*:*:*:*:*:*
foscam fi9805p_firmware <= 2.14.1.120 cpe:2.3:o:foscam:fi9805p_firmware:*:*:*:*:*:*:*:*
foscam fi9828p_firmware <= 2.13.1.120 cpe:2.3:o:foscam:fi9828p_firmware:*:*:*:*:*:*:*:*
foscam fi9828w_firmware <= 2.13.1.120 cpe:2.3:o:foscam:fi9828w_firmware:*:*:*:*:*:*:*:*
foscam fi9828p_firmware <= 2.11.1.133 cpe:2.3:o:foscam:fi9828p_firmware:*:*:*:*:*:*:*:*

References for CVE-2018-6831

cvelogic Threat Intelligence