xiongmaitech Vulnerabilities and Affected Products
Explore source-attributed vulnerabilities associated with xiongmaitech products.
Products
- uc-httpd2 vulnerabilities
- ahb7004t-gs-v3_firmware1 vulnerability
- ahb7004t-mhv2_firmware1 vulnerability
- ahb7008t-mh-v2_firmware1 vulnerability
- ahb7804r-mh-v2_firmware1 vulnerability
- ahb8004t-gl_firmware1 vulnerability
- ahb8008t-gl_firmware1 vulnerability
- ahb8032f-lme_firmware1 vulnerability
- mbd6304t1 vulnerability
- xm530_r80x30-pq_8m_firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-3765CRITICAL | Xiongmai AHB7804R-MH-V2 Sofia Service access controlA vulnerability classified as critical was found in Xiongmai AHB7804R-MH-V2, AHB8004T-GL, AHB8008T-GL, AHB7004T-GS-V3, AHB7004T-MHV2, AHB8032F-LME and XM530_R80X30-PQ_8M. Affected by this vulnerability is an unknown functionality of the component Sofia Service. The manipulation with the input ff00000000000000000000000000f103250000007b202252657422203a203130302c202253657373696f6e494422203a202230783022207d0a leads to improper access controls. The attack can be launched remotely. The exploit has bee… CWE-284Apr 14, 2024 | CVSS9.8v3.1 | EPSS1.26% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-45045HIGH | xiongmaitech mbd6304t Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')Multiple Xiongmai NVR devices, including MBD6304T V4.02.R11.00000117.10001.131900.00000 and NBD6808T-PL V4.02.R11.C7431119.12001.130000.00000, allow authenticated users to execute arbitrary commands as root, as exploited in the wild starting in approximately 2019. A remote and authenticated attacker, possibly using the default admin:tlJwpbo6 credentials, can connect to port 34567 and execute arbitrary operating system commands via a crafted JSON file during an upgrade request. Since at least 202… CWE-78Dec 1, 2022 | CVSS8.8v3.1 | EPSS1.24% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-41506CRITICAL | xiongmaitech ahb7008t-mh-v2_firmware Improper AuthenticationXiaongmai AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, HI3518_50H10L_S39 V4.02.R11.7601.Nat.Onvif.20170420, V4.02.R11.Nat.Onvif.20160422, V4.02.R11.7601.Nat.Onvif.20170424, V4.02.R11.Nat.Onvif.20170327, V4.02.R11.Nat.Onvif.20161205, V4.02.R11.Nat.20170301, V4.02.R12.Nat.OnvifS.20170727 is affected by a backdoor in the macGuarder and dvrHelper binaries of DVR/NVR/IP camera firmware due to static root account credentials in the system. | CVSS9.8v3.1 | EPSS2.16% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-10088CRITICAL | xiongmaitech uc-httpd Improper Restriction of Operations within the Bounds of a Memory BufferBuffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725. | CVSS9.8v3.0 | EPSS39.7% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2017-7577CRITICAL | xiongmaitech uc-httpd Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')XiongMai uc-httpd has directory traversal allowing the reading of arbitrary files via a "GET ../" HTTP request. CWE-22Apr 7, 2017 | CVSS9.8v3.0 | EPSS29% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |