9.8
CVE-2018-17878
- EPSS 0.12%
- Published 26.10.2023 22:15:08
- Last modified 21.11.2024 03:55:07
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintf() function.
Data is provided by the National Vulnerability Database (NVD)
Abus ≫ Tvip 10000 Firmware Version-
Abus ≫ Tvip 10001 Firmware Version-
Abus ≫ Tvip 10005 Firmware Version-
Abus ≫ Tvip 10005a Firmware Version-
Abus ≫ Tvip 10005b Firmware Version-
Abus ≫ Tvip 10050 Firmware Version-
Abus ≫ Tvip 10051 Firmware Version-
Abus ≫ Tvip 10055a Firmware Version-
Abus ≫ Tvip 10055b Firmware Version-
Abus ≫ Tvip 10500 Firmware Version-
Abus ≫ Tvip 10550 Firmware Version-
Abus ≫ Tvip 11000 Firmware Version-
Abus ≫ Tvip 11050 Firmware Version-
Abus ≫ Tvip 11500 Firmware Version-
Abus ≫ Tvip 11501 Firmware Version-
Abus ≫ Tvip 11502 Firmware Version-
Abus ≫ Tvip 11550 Firmware Version-
Abus ≫ Tvip 11551 Firmware Version-
Abus ≫ Tvip 11552 Firmware Version-
Abus ≫ Tvip 20000 Firmware Version-
Abus ≫ Tvip 20050 Firmware Version-
Abus ≫ Tvip 20500 Firmware Version-
Abus ≫ Tvip 20550 Firmware Version-
Abus ≫ Tvip 21000 Firmware Version-
Abus ≫ Tvip 21050 Firmware Version-
Abus ≫ Tvip 21500 Firmware Version-
Abus ≫ Tvip 21501 Firmware Version-
Abus ≫ Tvip 21502 Firmware Version-
Abus ≫ Tvip 21550 Firmware Version-
Abus ≫ Tvip 21551 Firmware Version-
Abus ≫ Tvip 21552 Firmware Version-
Abus ≫ Tvip 22500 Firmware Version-
Abus ≫ Tvip 31000 Firmware Version-
Abus ≫ Tvip 31001 Firmware Version-
Abus ≫ Tvip 31050 Firmware Version-
Abus ≫ Tvip 31500 Firmware Version-
Abus ≫ Tvip 31501 Firmware Version-
Abus ≫ Tvip 31550 Firmware Version-
Abus ≫ Tvip 31551 Firmware Version-
Abus ≫ Tvip 32500 Firmware Version-
Abus ≫ Tvip 51500 Firmware Version-
Abus ≫ Tvip 51550 Firmware Version-
Abus ≫ Tvip 71500 Firmware Version-
Abus ≫ Tvip 71501 Firmware Version-
Abus ≫ Tvip 71550 Firmware Version-
Abus ≫ Tvip 71551 Firmware Version-
Abus ≫ Tvip 72500 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.12% | 0.279 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.