PT-2024-29618 · Nvr · Nvr

Published

2024-12-24

·

Updated

2025-10-01

·

CVE-2024-41887

CVSS v4.0

5.1

Medium

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions NVR (affected versions not specified)
Description A flaw has been discovered that allows for remote code execution on the NVR. An attacker can create an NVR log file in a directory one level higher on the system, which can be used to corrupt files in the directory. The manufacturer has released patch firmware for the flaw.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

RCE

Weakness Enumeration

Related Identifiers

CVE-2024-41887

Affected Products

Nvr