Записи dw
7 опубликованных записей вендора dw.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-287 Improper Authentication1
- CWE-384 Session Fixation1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2022-34538Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vdw · megapix firmware · CWE-78 | Высокая8,8 | — | 2,7 % | 19 июл. 2022 г. |
35Наблюдать | CVE-2022-34540Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vdw · megapix firmware · CWE-78 | Высокая8,8 | — | 1,2 % | 19 июл. 2022 г. |
35Наблюдать | CVE-2022-34539Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/cdw · megapix firmware · CWE-78 | Высокая8,8 | — | 1,2 % | 19 июл. 2022 г. |
31Наблюдать | CVE-2022-34534Proof of concept | Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call.dw · spectrum server firmware | Высокая7,5 | — | 2,5 % | 19 июл. 2022 г. |
30Наблюдать | CVE-2022-34535Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files.dw · megapix firmware · CWE-287 | Высокая7,5 | — | 0,8 % | 19 июл. 2022 г. |
30Наблюдать | CVE-2022-34536Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a crafdw · megapix firmware · CWE-384 | Высокая7,5 | — | 0,7 % | 19 июл. 2022 г. |
21Наблюдать | CVE-2022-34537Эксплойта нет | Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the componendw · megapix firmware · CWE-79 | Средняя5,4 | — | 0,4 % | 19 июл. 2022 г. |
- CVE-2022-3453836Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/v
ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %dw · megapix firmware19 июл. 2022 г.
- CVE-2022-3454035Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/v
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %dw · megapix firmware19 июл. 2022 г.
- CVE-2022-3453935Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/c
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %dw · megapix firmware19 июл. 2022 г.
- CVE-2022-3453431Наблюдать
Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call.
ВысокаяCVSS 7,5Proof of conceptEPSS 3 %dw · spectrum server firmware19 июл. 2022 г.
- CVE-2022-3453530Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %dw · megapix firmware19 июл. 2022 г.
- CVE-2022-3453630Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a craf
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %dw · megapix firmware19 июл. 2022 г.
- CVE-2022-3453721Наблюдать
Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the componen
СредняяCVSS 5,4Эксплойта нетEPSS 0 %dw · megapix firmware19 июл. 2022 г.