Show filters
24 Total Results
Displaying 1-10 of 24
Sort by:
Attacker Value
Unknown

CVE-2024-23842

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR LGUVR-16H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2024-22772

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR LGUVR-8H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2024-22771

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR LGUVR-4H 1.02~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2024-22770

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR HVR-16781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2024-22769

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR HVR-8781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2024-22768

Disclosure Date: January 23, 2024 (last updated January 30, 2024)
Improper Input Validation in Hitron Systems DVR HVR-4781 1.03~4.02 allows an attacker to cause network attack in case of using defalut admin ID/PW.
Attacker Value
Unknown

CVE-2023-28811

Disclosure Date: November 23, 2023 (last updated December 09, 2023)
There is a buffer overflow in the password recovery feature of Hikvision NVR/DVR models. If exploited, an attacker on the same local area network (LAN) could cause the device to malfunction by sending specially crafted packets to an unpatched device.
Attacker Value
Unknown

CVE-2021-44954

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
In QVIS NVR DVR before 2021-12-13, an attacker can escalate privileges from a qvisdvr user to the root user by abusing a Sudo misconfiguration.
Attacker Value
Unknown

CVE-2021-41419

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
QVIS NVR DVR before 2021-12-13 is vulnerable to Remote Code Execution via Java deserialization.
Attacker Value
Unknown

CVE-2021-42071

Disclosure Date: October 07, 2021 (last updated February 23, 2025)
In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.