TROYANOSYVIRUS
Volver a CVEs

CVE-2023-4249

HIGH
8.8

Descripcion

Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 has a command injection vulnerability in their implementation of their binaries and handling of network requests.

Detalles CVE

Puntuacion CVSS v3.18.8
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado11/8/2023
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

zavio:b8220zavio:b8220_firmwarezavio:b8520zavio:b8520_firmwarezavio:cb3211zavio:cb3211_firmwarezavio:cb3212zavio:cb3212_firmwarezavio:cb5220zavio:cb5220_firmwarezavio:cb6231zavio:cb6231_firmwarezavio:cd321zavio:cd321_firmwarezavio:cf7201zavio:cf7201_firmwarezavio:cf7300zavio:cf7300_firmwarezavio:cf7500zavio:cf7500_firmwarezavio:cf7501zavio:cf7501_firmware

Debilidades (CWE)

CWE-121CWE-78

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.