PT-2024-30649 · Takenaka Engineering Co. · Digital Video Recorders

Masaki Kubo

+3

·

Published

2024-09-17

·

Updated

2024-09-20

·

CVE-2024-43778

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TAKENAKA ENGINEERING CO., LTD. digital video recorders (affected versions not specified)
Description The issue allows a remote authenticated attacker to execute an arbitrary OS command on the device or alter the device settings. This is an OS command injection vulnerability in multiple digital video recorders.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-43778

Affected Products

Digital Video Recorders