cbcvebase.
CVE-2024-11131
published 2025-03-19

CVE-2024-11131: A vulnerability regarding out-of-bounds read is found in the video interface. This allows remote attackers to execute arbitrary code via unspecified vectors…

PriorityP355critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.71%
49.0th percentile
A vulnerability regarding out-of-bounds read is found in the video interface. This allows remote attackers to execute arbitrary code via unspecified vectors. The following models with Synology Camera Firmware versions before 1.2.0-0525 may be affected: BC500, CC400W and TC500.

Affected

4 ranges
VendorProductVersion rangeFixed in
synologybc500_firmware< 1.2.0-05251.2.0-0525
synologycamera_firmware>= 1.1 < 1.2.0-05251.2.0-0525
synologycc400w_firmware< 1.2.0-05251.2.0-0525
synologytc500_firmware< 1.2.0-05251.2.0-0525
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.