CVE-2026-34005

HIGH

Xiongmai Dvr/nvr Devices < 4.03.R11 - Command Injection

Title source: rule

Description

In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 devices, root OS command injection can occur via shell metacharacters in the HostName value via an authenticated DVRIP protocol (TCP port 34567) request to the NetWork.NetCommon configuration handler, because system() is used.

Exploits (1)

nomisec WRITEUP 1 stars
by uky007 · poc
https://github.com/uky007/CVE-2026-34005

Scores

CVSS v3 8.8
EPSS 0.0010
EPSS Percentile 27.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
Xiongmai/DVR/NVR devices 4.03.R11
Published Mar 29, 2026
Tracked Since Mar 29, 2026