CVE-2024-3506

MEDIUM

XProtect Device Pack - Buffer Overflow

Title source: llm
STIX 2.1

Description

A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server under strict conditions.

References (1)

Core 1

Scores

CVSS v3 6.7
EPSS 0.0007
EPSS Percentile 21.9%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (1)
Milestone Systems/XProtect VMS < 13.1a
Published Oct 08, 2024
Tracked Since Feb 18, 2026