Записи acti
6 опубликованных записей вендора acti.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-306 Missing Authentication for Critical Function1
- CWE-521 Weak Password Requirements1
- CWE-598 Use of HTTP Request With Sensitive Query String1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2017-3186Эксплойта нет | ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC use non-random default credentials across all deacti · camera firmware · CWE-521 | Критическая9,8 | — | 6,1 % | 15 дек. 2017 г. |
41В плане | CVE-2017-3184Эксплойта нет | ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict access to the factory acti · camera firmware · CWE-306 | Критическая9,8 | — | 5,9 % | 15 дек. 2017 г. |
40В плане | CVE-2017-3185Эксплойта нет | ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC have a web application that uses the GET method acti · camera firmware · CWE-598 | Критическая9,8 | — | 3,2 % | 15 дек. 2017 г. |
35Наблюдать | CVE-2020-15956Proof of concept | ActiveMediaServer.exe in ACTi NVR3 Standard Server 3.0.12.42 allows remote unauthenticated attackers to trigger a buffer overflow and applicacti · nvr · CWE-120 | Высокая7,5 | — | 16,2 % | 4 авг. 2020 г. |
33Наблюдать | CVE-2007-4582Proof of concept | Buffer overflow in the nvUnifiedControl.AUnifiedControl.1 ActiveX control in nvUnifiedControl.dll 1.1.45.0 in ACTi Network Video Recorder (Nacti · network video recorder · CWE-119 | Высокая7,5 | — | 10,0 % | 28 авг. 2007 г. |
22Наблюдать | CVE-2007-4583Proof of concept | Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video acti · network video recorder · CWE-22 | Средняя5,0 | — | 8,0 % | 28 авг. 2007 г. |
- CVE-2017-318641В плане
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC use non-random default credentials across all de
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %acti · camera firmware15 дек. 2017 г.
- CVE-2017-318441В плане
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC fail to properly restrict access to the factory
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %acti · camera firmware15 дек. 2017 г.
- CVE-2017-318540В плане
ACTi cameras including the D, B, I, and E series using firmware version A1D-500-V6.11.31-AC have a web application that uses the GET method
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %acti · camera firmware15 дек. 2017 г.
- CVE-2020-1595635Наблюдать
ActiveMediaServer.exe in ACTi NVR3 Standard Server 3.0.12.42 allows remote unauthenticated attackers to trigger a buffer overflow and applic
ВысокаяCVSS 7,5Proof of conceptEPSS 16 %acti · nvr4 авг. 2020 г.
- CVE-2007-458233Наблюдать
Buffer overflow in the nvUnifiedControl.AUnifiedControl.1 ActiveX control in nvUnifiedControl.dll 1.1.45.0 in ACTi Network Video Recorder (N
ВысокаяCVSS 7,5Proof of conceptEPSS 10 %acti · network video recorder28 авг. 2007 г.
- CVE-2007-458322Наблюдать
Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video
СредняяCVSS 5,0Proof of conceptEPSS 8 %acti · network video recorder28 авг. 2007 г.