Record summary

CVE-2018-19864 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.

Description

NUUO NVRmini2 Network Video Recorder firmware through 3.9.1 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow), resulting in ability to read camera feeds or reconfigure the device.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBNUUO NVRMini 2 3.9.1 - 'sscanf' Stack OverflowExploitDB exploitby @0x00stringNot analyzed1 file
ExploitDB

PoC details

References

4