Record summary

CVE-2021-33554 has a selected CVSS score of 7.2 (high); EIP currently links 1 catalogued exploit.

Description

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Oct 9, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Catalogued exploits
1

Affected products and versions

3
ProductSourceVersion rangeStatus
CVE ListEBC-21xx 1.12.13.2affected
EBC-21xx 1.12.14.5affected
EFD-22xx 1.12.13.2affected
EFD-22xx 1.12.14.5affected
ETHC-22xx 1.12.13.2affected
ETHC-22xx 1.12.14.5affected
EWPC-22xx 1.12.13.2affected
EWPC-22xx 1.12.14.5affected
EBC-21xx to ≤ 1.12.0.27affected
EFD-22xx to ≤ 1.12.0.27affected
ETHC-22xx to ≤ 1.12.0.27affected
EWPC-22xx to ≤ 1.12.0.27affected
CVE ListEEC-2xx 1.12.13.2affected
EEC-2xx 1.12.14.5affected
EEN-20xx 1.12.13.2affected
EEN-20xx 1.12.14.5affected
EEC-2xx to ≤ 1.12.0.27affected
EEN-20xx to ≤ 1.12.0.27affected
VulnCheckVersion data not supplied

Proofs of concept

1

Catalogued exploits

MetasploitGeutebruck Multiple Remote Command ExecutionMetasploit exploitby Ibrahim Ayadhi +2 moreNot analyzed1 file

Ruby · linked to 8 vulnerabilities

Metasploit

PoC details

References

3