PT-2019-13800 · Microdigital · Microdigital N-Series

Shaposhnikov Ilya

·

Published

2019-08-06

·

Updated

2019-08-14

·

CVE-2019-14708

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MicroDigital N-series cameras versions through 6400.0.8.5
Description A buffer overflow issue exists due to the action parameter, which can lead to remote code execution in the context of the nobody account.
Recommendations For versions through 6400.0.8.5, consider restricting access to the vulnerable action parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-14708

Affected Products

Microdigital N-Series