Milesight Nvr Ms-Nxxxx-Xxc vulnerabilities
2 known vulnerabilities affecting milesight/nvr_ms-nxxxx-xxc.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2
Vulnerabilities
Page 1 of 1
CVE-2023-30466P2CRITICALCVSS 9.8≥ 73.X, < 73.9.0.18-r22023-04-28
CVE-2023-30466 [CRITICAL] CWE-640 CVE-2023-30466: This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nx
This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nxxxx-xxT, MS-Nxxxx-xxH and MS-Nxxxx-xxC), due to a weak password reset mechanism at the Milesight NVR web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http requests on the targeted devi
nvd
CVE-2023-30467P2CRITICALCVSS 9.8≥ 73.X, < 73.9.0.18-r22023-04-28
CVE-2023-30467 [CRITICAL] CWE-285 CVE-2023-30467: This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nx
This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nxxxx-xxT, MS-Nxxxx-xxH and MS-Nxxxx-xxC), due to improper authorization at the Milesight NVR web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http requests on the targeted device.
Succ
nvd