CVE-2024-7029

HIGH EXPLOITED IN THE WILD NUCLEI

Avtech Avm1203 Firmware - Command Injection

Title source: rule

Description

Commands can be injected over the network and executed without authentication.

Exploits (4)

nomisec WORKING POC 11 stars
by bigherocenter · remote
https://github.com/bigherocenter/CVE-2024-7029-EXPLOIT
nomisec WORKING POC 8 stars
by geniuszly · remote
https://github.com/geniuszly/CVE-2024-7029
nomisec WORKING POC 5 stars
by ebrasha · remote
https://github.com/ebrasha/CVE-2024-7029
inthewild WORKING POC
poc
https://github.com/geniuszlyy/cve-2024-7029

Nuclei Templates (1)

AVTECH IP Camera - Command Injection
HIGHVERIFIEDby DhiyaneshDK
FOFA: body="AVTECH Software"

Scores

CVSS v3 8.8
EPSS 0.9294
EPSS Percentile 99.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2024-08-28
InTheWild.io 2024-07-29
CWE
CWE-77
Status published
Products (1)
avtech/avm1203_firmware < fullimg-1023-1007-1011-1009
Published Aug 02, 2024
Tracked Since Feb 18, 2026