TROYANOSYVIRUS
Back to CVEs

CVE-2025-34066

N/A

Description

An improper certificate validation vulnerability exists in AVTECH IP cameras, DVRs, and NVRs due to the use of wget with --no-check-certificate in scripts like SyncCloudAccount.sh and SyncPermit.sh. This exposes HTTPS communications to man-in-the-middle (MITM) attacks.

CVE Details

CVSS v3.1 ScoreN/A
Published7/1/2025
Last Modified7/3/2025
Sourcenvd
Honeypot Sightings0

This product uses data from the NVD API but is not endorsed or certified by the NVD.