PT-2021-20193 · Geutebrück+1 · Geutebrück Camera Devices+1

Published

2021-09-13

·

Updated

2021-09-27

·

CVE-2021-33546

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions UDP Technology camera devices (affected versions not specified) Geutebrück camera devices (affected versions not specified)
Description The issue is related to a stack-based buffer overflow condition in the name parameter. This may allow an attacker to remotely execute arbitrary code.
Recommendations For UDP Technology camera devices, restrict access to the name parameter to minimize the risk of exploitation. For Geutebrück camera devices, avoid using the name parameter in affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33546

Affected Products

Geutebrück Camera Devices
Udp Technology Camera Devices