mercurycom kayıtları
mercurycom üreticisine ait 13 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-287 Improper Authentication1
- CWE-307 Improper Restriction of Excessive Authentication Attempts1
- CWE-400 Uncontrolled Resource Consumption1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
13 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2023-46518İstismar yok | Mercury A15 V1.0 20230818_1.0.3 was discovered to contain a command execution vulnerability via the component cloudDeviceTokenSuccCB.mercurycom · a15 firmware · CWE-787 | Kritik9,8 | — | %1,8 | 25 Eki 2023 |
39İzleyin | CVE-2026-35903İstismar yok | MERCURY MIPC252W IP camera 1.0.5 Build 230306 Rel.79931n contains an improper authentication vulnerability in the RTSP service.mercurycom · mipc252w firmware · CWE-287 | Kritik9,8 | — | %0,6 | 27 Nis 2026 |
39İzleyin | CVE-2025-50401İstismar yok | Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter password.mercurycom · d196g firmware · CWE-120 | Kritik9,8 | — | %0,4 | 16 Ara 2025 |
39İzleyin | CVE-2025-50398İstismar yok | Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter fac_passwordmercurycom · d196g firmware · CWE-120 | Kritik9,8 | — | %0,4 | 16 Ara 2025 |
36İzleyin | CVE-2022-31849İstismar yok | MERCURY MIPC451-4 1.0.22 Build 220105 Rel.55642n was discovered to contain a remote code execution (RCE) vulnerability which is exploitable mercurycom · mipc451-4 firmware | Yüksek8,8 | — | %1,9 | 16 Haz 2022 |
32İzleyin | CVE-2021-27825Kavram kanıtı | A directory traversal vulnerability on Mercury MAC1200R devices allows attackers to read arbitrary files via a web-static/ URL.mercurycom · mac1200r firmware · CWE-22 | Yüksek7,5 | — | %7,8 | 29 May 2023 |
30İzleyin | CVE-2026-31256İstismar yok | A null pointer dereference vulnerability exists in the RTSP service of the MERCURY MIPC252W 1.0.5 Build 230306 Rel.79931n.mercurycom · mipc252w firmware · CWE-476 | Yüksek7,5 | — | %0,5 | 27 Nis 2026 |
27İzleyin | CVE-2024-8655İstismar yok | Mercury MNVR816 web-static file accessmercury · mnvr816 · CWE-552 | Orta6,9 | — | %0,5 | 10 Eyl 2024 |
26İzleyin | CVE-2012-4999Kavram kanıtı | Mercury MR804 Router 8.0 3.8.1 Build 101220 Rel.53006nB allows remote attackers to cause a denial of service (service hang) via a crafted stmercurycom · mr804 firmware · CWE-20 | Orta6,1 | — | %6,6 | 19 Eyl 2012 |
26İzleyin | CVE-2025-65288İstismar yok | A buffer overflow in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) occurs when the device accepts and stores excessively longmercurycom · mr816 firmware · CWE-120 | Orta6,5 | — | %0,4 | 9 Ara 2025 |
24İzleyin | CVE-2025-65289İstismar yok | A stored Cross site scripting (XSS) vulnerability in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) router allows a remote attmercurycom · mr816 firmware · CWE-79 | Orta6,1 | — | %0,3 | 9 Ara 2025 |
24İzleyin | CVE-2026-35902İstismar yok | The RTSP service of MERCURY IP camera MIPC252W 1.0.5 Build 230306 has an issue handling failed Digest authentication attempts.mercurycom · mipc252w firmware · CWE-307 | Orta6,2 | — | %0,2 | 27 Nis 2026 |
17İzleyin | CVE-2026-35901İstismar yok | A handling issue in the RTSP service of the Mercury MIPC252W 1.0.5 Build 230306 Rel.79931n allows an authenticated attacker to trigger sessimercurycom · mipc252w firmware · CWE-400 | Orta4,4 | — | %0,2 | 27 Nis 2026 |
- CVE-2023-4651840Planlayın
Mercury A15 V1.0 20230818_1.0.3 was discovered to contain a command execution vulnerability via the component cloudDeviceTokenSuccCB.
KritikCVSS 9,8İstismar yokEPSS %2mercurycom · a15 firmware25 Eki 2023
- CVE-2026-3590339İzleyin
MERCURY MIPC252W IP camera 1.0.5 Build 230306 Rel.79931n contains an improper authentication vulnerability in the RTSP service.
KritikCVSS 9,8İstismar yokEPSS %1mercurycom · mipc252w firmware27 Nis 2026
- CVE-2025-5040139İzleyin
Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter password.
KritikCVSS 9,8İstismar yokEPSS %0mercurycom · d196g firmware16 Ara 2025
- CVE-2025-5039839İzleyin
Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter fac_password
KritikCVSS 9,8İstismar yokEPSS %0mercurycom · d196g firmware16 Ara 2025
- CVE-2022-3184936İzleyin
MERCURY MIPC451-4 1.0.22 Build 220105 Rel.55642n was discovered to contain a remote code execution (RCE) vulnerability which is exploitable
YüksekCVSS 8,8İstismar yokEPSS %2mercurycom · mipc451-4 firmware16 Haz 2022
- CVE-2021-2782532İzleyin
A directory traversal vulnerability on Mercury MAC1200R devices allows attackers to read arbitrary files via a web-static/ URL.
YüksekCVSS 7,5Kavram kanıtıEPSS %8mercurycom · mac1200r firmware29 May 2023
- CVE-2026-3125630İzleyin
A null pointer dereference vulnerability exists in the RTSP service of the MERCURY MIPC252W 1.0.5 Build 230306 Rel.79931n.
YüksekCVSS 7,5İstismar yokEPSS %0mercurycom · mipc252w firmware27 Nis 2026
- CVE-2024-865527İzleyin
Mercury MNVR816 web-static file access
OrtaCVSS 6,9İstismar yokEPSS %0mercury · mnvr81610 Eyl 2024
- CVE-2012-499926İzleyin
Mercury MR804 Router 8.0 3.8.1 Build 101220 Rel.53006nB allows remote attackers to cause a denial of service (service hang) via a crafted st
OrtaCVSS 6,1Kavram kanıtıEPSS %7mercurycom · mr804 firmware19 Eyl 2012
- CVE-2025-6528826İzleyin
A buffer overflow in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) occurs when the device accepts and stores excessively long
OrtaCVSS 6,5İstismar yokEPSS %0mercurycom · mr816 firmware9 Ara 2025
- CVE-2025-6528924İzleyin
A stored Cross site scripting (XSS) vulnerability in the Mercury MR816v2 (081C3114 4.8.7 Build 110427 Rel 36550n) router allows a remote att
OrtaCVSS 6,1İstismar yokEPSS %0mercurycom · mr816 firmware9 Ara 2025
- CVE-2026-3590224İzleyin
The RTSP service of MERCURY IP camera MIPC252W 1.0.5 Build 230306 has an issue handling failed Digest authentication attempts.
OrtaCVSS 6,2İstismar yokEPSS %0mercurycom · mipc252w firmware27 Nis 2026
- CVE-2026-3590117İzleyin
A handling issue in the RTSP service of the Mercury MIPC252W 1.0.5 Build 230306 Rel.79931n allows an authenticated attacker to trigger sessi
OrtaCVSS 4,4İstismar yokEPSS %0mercurycom · mipc252w firmware27 Nis 2026