Amcrest Vulnerabilities and Affected Products
Vulnerabilities associated with ipm-721s_firmware.
Products
Clear product- Cameras and Network Video Recorder (NVR)1 vulnerability
- IP2M-841B1 vulnerability
- IP2M-841W1 vulnerability
- IPC-IP2M-841B1 vulnerability
- IPC-IP3M-943B1 vulnerability
- IPC-IP3M-943S1 vulnerability
- IPC-IP3M-HX2B1 vulnerability
- IPC-IPM-721S1 vulnerability
- ipm-721s_firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2017-8226CRITICAL | Amcrest ipm-721s_firmware Use of Hard-coded CredentialsAmcrest IPM-721S V2.420.AC00.16.R.20160909 devices have default credentials that are hardcoded in the firmware and can be extracted by anyone who reverses the firmware to identify them. If the firmware version V2.420.AC00.16.R 9/9/2016 is dissected using binwalk tool, one obtains a _user-x.squashfs.img.extracted archive which contains the filesystem set up on the device that many of the binaries in the /usr folder. The binary "sonia" is the one that has the vulnerable function that sets up the d… CWE-798Jul 3, 2019 | CVSS9.8v3.0 | EPSS3.8% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |