AVTECH kayıtları
avtech üreticisine ait 13 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')5
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-287 Improper Authentication1
- CWE-295 Improper Certificate Validation1
- CWE-297 Improper Validation of Certificate with Host Mismatch1
- CWE-668 Exposure of Resource to Wrong Sphere1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
13 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
46Planlayın | CVE-2024-7029Kavram kanıtı | Command Injection in AVTech AVM1203 (IP Camera)avtech · avm1203 firmware · CWE-77 | Yüksek8,7 | — | %39,0 | 2 Ağu 2024 |
43Planlayın | CVE-2013-4982Kavram kanıtı | AVTECH AVN801 DVR has a security bypass via the administration login captchaavtech · avn801 dvr firmware · CWE-287 | Kritik9,8 | — | %13,1 | 27 Ara 2019 |
40Planlayın | CVE-2025-57201İstismar yok | AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability iavtech · dgm1104 firmware · CWE-77 | Yüksek8,8 | — | %17,2 | 3 Ara 2025 |
39İzleyin | CVE-2025-46408Kavram kanıtı | An issue was discovered in the methods push.lite.avtech.com.AvtechLib.GetHttpsResponse and push.lite.avtech.com.Push_HttpService.getNewHttpCavtech · eagleeyes\(lite\) · CWE-297 | Kritik9,8 | — | %0,7 | 15 Eyl 2025 |
38İzleyin | CVE-2013-4980Kavram kanıtı | Buffer overflow in the RTSP Packet Handler in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, aavtech · avn801 dvr firmware · CWE-119 | Kritik9,0 | — | %6,0 | 3 Mar 2014 |
38İzleyin | CVE-2013-4981Kavram kanıtı | Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, aavtech · avn801 dvr firmware · CWE-119 | Kritik9,0 | — | %6,0 | 3 Mar 2014 |
36İzleyin | CVE-2025-57199Kavram kanıtı | AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability iavtech · dgm1104 firmware · CWE-77 | Yüksek8,8 | — | %3,3 | 3 Ara 2025 |
36İzleyin | CVE-2019-13379İstismar yok | On AVTECH Room Alert 3E devices before 2.2.5, an attacker with access to the device's web interface may escalate privileges from an unauthenavtech · room alert 3e firmware · CWE-668 | Yüksek8,8 | — | %3,0 | 7 Tem 2019 |
36İzleyin | CVE-2025-57198İstismar yok | AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability iavtech · dgm1104 firmware · CWE-77 | Yüksek8,8 | — | %2,8 | 3 Ara 2025 |
35İzleyin | CVE-2025-50944Kavram kanıtı | An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0.avtech · eagleeyes\(lite\) · CWE-295 | Yüksek8,8 | — | %0,3 | 15 Eyl 2025 |
31İzleyin | CVE-2008-3939İstismar yok | Directory traversal vulnerability in the web interface in AVTECH PageR Enterprise before 5.0.7 allows remote attackers to read arbitrary filavtech · pager enterprise · CWE-22 | Yüksek7,5 | — | %1,7 | 5 Eyl 2008 |
27İzleyin | CVE-2025-57200İstismar yok | AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability iavtech · dgm1104 firmware · CWE-77 | Orta6,5 | — | %2,4 | 3 Ara 2025 |
24İzleyin | CVE-2025-57202İstismar yok | A stored cross-site scripting (XSS) vulnerability in the PwdGrp.cgi endpoint of AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1avtech · dgm1104 firmware · CWE-79 | Orta6,1 | — | %0,5 | 3 Ara 2025 |
- CVE-2024-702946Planlayın
Command Injection in AVTech AVM1203 (IP Camera)
YüksekCVSS 8,7Kavram kanıtıEPSS %39avtech · avm1203 firmware2 Ağu 2024
- CVE-2013-498243Planlayın
AVTECH AVN801 DVR has a security bypass via the administration login captcha
KritikCVSS 9,8Kavram kanıtıEPSS %13avtech · avn801 dvr firmware27 Ara 2019
- CVE-2025-5720140Planlayın
AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability i
YüksekCVSS 8,8İstismar yokEPSS %17avtech · dgm1104 firmware3 Ara 2025
- CVE-2025-4640839İzleyin
An issue was discovered in the methods push.lite.avtech.com.AvtechLib.GetHttpsResponse and push.lite.avtech.com.Push_HttpService.getNewHttpC
KritikCVSS 9,8Kavram kanıtıEPSS %1avtech · eagleeyes\(lite\)15 Eyl 2025
- CVE-2013-498038İzleyin
Buffer overflow in the RTSP Packet Handler in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, a
KritikCVSS 9,0Kavram kanıtıEPSS %6avtech · avn801 dvr firmware3 Mar 2014
- CVE-2013-498138İzleyin
Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, a
KritikCVSS 9,0Kavram kanıtıEPSS %6avtech · avn801 dvr firmware3 Mar 2014
- CVE-2025-5719936İzleyin
AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability i
YüksekCVSS 8,8Kavram kanıtıEPSS %3avtech · dgm1104 firmware3 Ara 2025
- CVE-2019-1337936İzleyin
On AVTECH Room Alert 3E devices before 2.2.5, an attacker with access to the device's web interface may escalate privileges from an unauthen
YüksekCVSS 8,8İstismar yokEPSS %3avtech · room alert 3e firmware7 Tem 2019
- CVE-2025-5719836İzleyin
AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability i
YüksekCVSS 8,8İstismar yokEPSS %3avtech · dgm1104 firmware3 Ara 2025
- CVE-2025-5094435İzleyin
An issue was discovered in the method push.lite.avtech.com.MySSLSocketFactoryNew.checkServerTrusted in AVTECH EagleEyes 2.0.0.
YüksekCVSS 8,8Kavram kanıtıEPSS %0avtech · eagleeyes\(lite\)15 Eyl 2025
- CVE-2008-393931İzleyin
Directory traversal vulnerability in the web interface in AVTECH PageR Enterprise before 5.0.7 allows remote attackers to read arbitrary fil
YüksekCVSS 7,5İstismar yokEPSS %2avtech · pager enterprise5 Eyl 2008
- CVE-2025-5720027İzleyin
AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1003 was discovered to contain an authenticated command injection vulnerability i
OrtaCVSS 6,5İstismar yokEPSS %2avtech · dgm1104 firmware3 Ara 2025
- CVE-2025-5720224İzleyin
A stored cross-site scripting (XSS) vulnerability in the PwdGrp.cgi endpoint of AVTECH SECURITY Corporation DGM1104 FullImg-1015-1004-1006-1
OrtaCVSS 6,1İstismar yokEPSS %0avtech · dgm1104 firmware3 Ara 2025