Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 3 min 103 bronnen 1 kritiek 44 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2019-11001

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-78

Beschrijving

Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W IP cameras contain an authenticated OS command injection vulnerability. This vulnerability allows an authenticated admin to use the "TestEmail" functionality to inject and run OS commands as root.

Required action: The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization if a current mitigation is unavailable.

Vendors

Reolink

Affected products

Multiple Ip Cameras

References