RSS   Vulnerabilities for 'Network video recorder'   RSS

2007-08-28
 
CVE-2007-4583

 

 
Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allow remote attackers to (1) create or overwrite arbitrary files via a full pathname in the first argument to the SaveXMLFile method or (2) delete arbitrary files via a full pathname in the argument to the DeleteXMLFile method.

 
 
CVE-2007-4582

 

 
Buffer overflow in the nvUnifiedControl.AUnifiedControl.1 ActiveX control in nvUnifiedControl.dll 1.1.45.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allows remote attackers to execute arbitrary code via a long second argument to the SetText method.

 

 >>> Vendor: ACTI 3 Products
Network video recorder
Camera firmware
NVR


Copyright 2024, cxsecurity.com

 

Back to Top