vendor:
NVR / Cams
by:
qwsj
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: NVR / Cams
Affected Version From: 1.6.0902.0000.3.0.29.0.0
Affected Version To: 2.0.0601.1002.3.0.33.0.12
Patch Exists: YES
Related CWE: N/A
CPE: h:sunell:security_nvr_/cams
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows / Linux
2016
SunellSecurity NVR / Cams – Buffer overflow in CGI
A bug in CGI scrypts for develop leads to a web service buffer overflow and a stop of the web service, resulting in the device rebooting. The exploit is triggered by sending a request to the link http://IP/cgi-bin/videoStream.cgi?userName= or http://IP/cgi-bin/image.cgi?userName= with a payload of 1072 symbols of 'A'. Affected versions are 1.6.0902.0000.3.0.29.0.0, 1.6.0802.0000.0.0.2906.1.0, 2.0.0601.1002.3.0.56.0.1_TD, 2.0.0801.1002.1.1.125.0.0, and 2.0.0601.1002.3.0.33.0.12.
Mitigation:
Update to the latest version of the firmware.