Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hch6-hfvx-h3mw

Опубликовано: 24 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the

NVR

. An attacker enters a special value for a specific URL parameter, resulting in a NULL pointer reference and a reboot of the NVR. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the

NVR

. An attacker enters a special value for a specific URL parameter, resulting in a NULL pointer reference and a reboot of the NVR. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

EPSS

Процентиль: 79%
0.01225
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-476

Связанные уязвимости

nvd
около 1 года назад

Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR . An attacker enters a special value for a specific URL parameter, resulting in a NULL pointer reference and a reboot of the NVR. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

EPSS

Процентиль: 79%
0.01225
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-476