CVE Database and Vulnerability Search
Search CVE and GHSA vulnerability records by identifier, title, vendor, product, package, or CWE. Filter by severity, CISA KEV, ransomware association, linked artifacts, and Nuclei templates; sort by publication date, CVSS, or EPSS.
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-33554HIGH | UDP Technology/Geutebrück camera devices: Command injection in appfile.filename parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS57.1% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33553HIGH | UDP Technology/Geutebrück camera devices: Command injection in command parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS48.8% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33552HIGH | UDP Technology/Geutebrück camera devices: Command injection in date parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS48.8% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33551HIGH | UDP Technology/Geutebrück camera devices: Command injection in environment.lang parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS48.8% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33550HIGH | UDP Technology/Geutebrück camera devices: Command injection in date parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS57.1% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33549HIGH | UDP Technology/Geutebrück camera devices: Buffer overflow in action parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the action parameter, which may allow an attacker to remotely execute arbitrary code. CWE-121Sep 13, 2021 | CVSS7.2v3.1 | EPSS66.2% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33548HIGH | UDP Technology/Geutebrück camera devices: Command injection in preserve parameter leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS57.1% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-33544HIGH | UDP Technology/Geutebrück camera devices: command injection leading to RCEMultiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code. | CVSS7.2v3.1 | EPSS95.3% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |