Hanwhavision Qno-6082R Firmware vulnerabilities
4 known vulnerabilities affecting hanwhavision/qno-6082r_firmware.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2023-5038HIGHCVSS 8.7fixed in 1.41.162024-06-25
CVE-2023-5038 [HIGH] CWE-248 CVE-2023-5038: badmonkey, a Security Researcher has found a flaw that allows for a unauthenticated DoS attack on th
badmonkey, a Security Researcher has found a flaw that allows for a unauthenticated DoS attack on the camera. An attacker runs a crafted URL, nobody can access the web management page of the camera. and must manually restart the device or re-power it. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report fo
nvd
CVE-2023-5037HIGHCVSS 7.1fixed in 1.41.162023-11-13
CVE-2023-5037 [HIGH] CWE-78 CVE-2023-5037: badmonkey, a Security Researcher has found a flaw that allows for a authenticated command injection
badmonkey, a Security Researcher has found a flaw that allows for a authenticated command injection on the camera. An attacker could inject malicious into request packets to execute command. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
nvd
CVE-2023-31996HIGHCVSS 8.8fixed in 1.41.142023-05-23
CVE-2023-31996 [HIGH] CWE-77 CVE-2023-31996: Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Command Injection due to improper sanitization
Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Command Injection due to improper sanitization of special characters for the NAS storage test function.
nvd
CVE-2023-31995MEDIUMCVSS 5.4fixed in 1.41.142023-05-23
CVE-2023-31995 [MEDIUM] CWE-79 CVE-2023-31995: Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Cross Site Scripting (XSS).
Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Cross Site Scripting (XSS).
nvd