dw kayıtları
dw üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-287 Improper Authentication1
- CWE-384 Session Fixation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2022-34538İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vdw · megapix firmware · CWE-78 | Yüksek8,8 | — | %2,7 | 19 Tem 2022 |
35İzleyin | CVE-2022-34540İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vdw · megapix firmware · CWE-78 | Yüksek8,8 | — | %1,2 | 19 Tem 2022 |
35İzleyin | CVE-2022-34539İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/cdw · megapix firmware · CWE-78 | Yüksek8,8 | — | %1,2 | 19 Tem 2022 |
31İzleyin | CVE-2022-34534Kavram kanıtı | Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call.dw · spectrum server firmware | Yüksek7,5 | — | %2,5 | 19 Tem 2022 |
30İzleyin | CVE-2022-34535İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files.dw · megapix firmware · CWE-287 | Yüksek7,5 | — | %0,8 | 19 Tem 2022 |
30İzleyin | CVE-2022-34536İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a crafdw · megapix firmware · CWE-384 | Yüksek7,5 | — | %0,7 | 19 Tem 2022 |
21İzleyin | CVE-2022-34537İstismar yok | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the componendw · megapix firmware · CWE-79 | Orta5,4 | — | %0,4 | 19 Tem 2022 |
- CVE-2022-3453836İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/v
YüksekCVSS 8,8İstismar yokEPSS %3dw · megapix firmware19 Tem 2022
- CVE-2022-3454035İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/v
YüksekCVSS 8,8İstismar yokEPSS %1dw · megapix firmware19 Tem 2022
- CVE-2022-3453935İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/c
YüksekCVSS 8,8İstismar yokEPSS %1dw · megapix firmware19 Tem 2022
- CVE-2022-3453431İzleyin
Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call.
YüksekCVSS 7,5Kavram kanıtıEPSS %3dw · spectrum server firmware19 Tem 2022
- CVE-2022-3453530İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files.
YüksekCVSS 7,5İstismar yokEPSS %1dw · megapix firmware19 Tem 2022
- CVE-2022-3453630İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a craf
YüksekCVSS 7,5İstismar yokEPSS %1dw · megapix firmware19 Tem 2022
- CVE-2022-3453721İzleyin
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the componen
OrtaCVSS 5,4İstismar yokEPSS %0dw · megapix firmware19 Tem 2022