Skip to content
Noroxi

Vivotek records

41 published records for vendor vivotek.

All records

41 records
  • CVE-2017-9828
    64This week

    '/cgi-bin/admin/testserver.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable to shell command injection, which al

    CriticalCVSS 9.8No exploitEPSS 82%

    vivotek · network camera ib8369 firmwareJun 23, 2017

  • '/cgi-bin/admin/downloadMedias.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable, which allows remote attackers t

    HighCVSS 7.5No exploitEPSS 69%

    vivotek · network camera ib8369 firmwareJun 23, 2017

  • A Buffer Overflow vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via a specially crafted packet in the Authorization heade

    CriticalCVSS 9.8Proof of conceptEPSS 42%

    vivotek · pt7135 firmwareJan 24, 2020

  • A Command Injection vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via the system.ntp parameter to the farseer.out binary

    HighCVSS 8.8Proof of conceptEPSS 20%

    vivotek · pt7135 firmwareJan 24, 2020

  • Vivotek FD8136 devices allow Remote Command Injection, aka "another command injection vulnerability in our target device," a different issue

    CriticalCVSS 9.8No exploitEPSS 4%

    vivotek · fd8136 firmwareJul 10, 2019

  • Vivotek FD8136 devices allow remote memory corruption and remote code execution because of a stack-based buffer overflow, related to sprintf

    CriticalCVSS 9.8No exploitEPSS 4%

    vivotek · fd8136 firmwareJul 10, 2019

  • Vivotek FD8136 devices allow Remote Command Injection, related to BusyBox and wget.

    CriticalCVSS 9.8No exploitEPSS 3%

    vivotek · fd8136 firmwareJul 10, 2019

  • VIVOTEK IP Camera devices with firmware before 0x20x have a stack-based buffer overflow via a crafted HTTP header.

    CriticalCVSS 9.8No exploitEPSS 3%

    vivotek · cameraSep 10, 2019

  • CVE-2008-4771
    39Monitor

    Stack-based buffer overflow in VATDecoder.VatCtrl.1 ActiveX control in (1) 4xem VatCtrl Class (VATDecoder.dll 1.0.0.27 and 1.0.0.51), (2) D-

    CriticalCVSS 9.3Proof of conceptEPSS 7%

    4xem · vatctrl classOct 28, 2008

  • An authentication bypass vulnerability in VIVOTEK IPCam versions prior to 0x13a was found.

    CriticalCVSS 9.8No exploitEPSS 1%

    vivotek · cameraSep 10, 2019

  • An issue in vivotek Network Camera v.FD8166A-VVTK-0204j allows a remote attacker to execute arbitrary code via a crafted payload to the uplo

    CriticalCVSS 9.8No exploitEPSS 1%

    vivotek · camera firmwareFeb 29, 2024

  • No password set for administrative account in Vivotek IP7137 cameras

    CriticalCVSS 9.3No exploitEPSS 0%

    vivotek · ip7137 firmwareJan 9, 2026

  • CVE-2024-7441
    36Monitor

    Vivotek SD9364 httpd read stack-based overflow

    HighCVSS 8.7No exploitEPSS 8%

    vivotek · sd9364 firmwareAug 3, 2024

  • VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 2 of 2) via eventscript.cgi.

    HighCVSS 8.8No exploitEPSS 3%

    vivotek · cameraSep 5, 2018

  • VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow remote attackers to execute arbitrary code (issue 1 of 2) via the ONVIF interface, (/o

    HighCVSS 8.8No exploitEPSS 3%

    vivotek · cameraSep 5, 2018

  • Various VIVOTEK FD8*, FD9*, FE9*, IB8*, IB9*, IP9*, IZ9*, MS9*, SD9*, and other devices before XXXXXX-VVTK-xx06a allow remote attackers to e

    HighCVSS 8.8No exploitEPSS 3%

    vivotek · cameraAug 29, 2018

  • VIVOTEK Network Cameras before XXXXX-VVTK-2.2002.xx.01x (and before XXXXX-VVTK-0XXXX_Beta2) allows an authenticated user to upload and execu

    HighCVSS 8.8No exploitEPSS 3%

    vivotek · cc9381-hv firmwareMay 28, 2020

  • A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Viv

    HighCVSS 8.8No exploitEPSS 1%

    vivotek · fd8136 firmwareJun 2, 2026

  • A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek FD8136 cameras runni

    HighCVSS 8.8No exploitEPSS 1%

    vivotek · fd8136 firmwareJun 2, 2026

  • VIVOTEK FD8177 devices before XXXXXX-VVTK-xx06a allow CSRF.

    HighCVSS 8.8No exploitEPSS 0%

    vivotek · cameraSep 5, 2018

  • Command injection in Vivotek IP7137 cameras

    HighCVSS 8.6No exploitEPSS 2%

    vivotek · ip7137 firmwareJan 9, 2026

  • CVE-2024-7439
    34Monitor

    Vivotek CC8160 httpd read stack-based overflow

    HighCVSS 8.7No exploitEPSS 1%

    vivotek · cc8160 firmwareAug 3, 2024

  • Unprotected RTSP stream in Vivotek IP7137 cameras

    HighCVSS 8.7No exploitEPSS 0%

    vivotek · ip7137 firmwareJan 9, 2026

  • CVE-2013-4985
    33Monitor

    Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream

    HighCVSS 7.5Proof of conceptEPSS 9%

    vivotek · ip7160 firmwareDec 27, 2019

  • CVE-2013-1594
    32Monitor

    An Information Disclosure vulnerability exists via a GET request in Vivotek PT7135 IP Camera 0300a and 0400a due to wireless keys and 3rd pa

    HighCVSS 7.5Proof of conceptEPSS 7%

    vivotek · pt7135 firmwareJan 24, 2020