CVE-2018-10676

CeNova, Night OWL, Novo, Pulnix, QSee, Securus, and TBK Vision DVR devices allow remote attackers to download a file and obtain sensitive credential information via a direct request for the download.rsp URI.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tbkvision:tbk-dvr4216_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:tbkvision:tbk-dvr4216:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:tbkvision:tbk-dvr4104_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:tbkvision:tbk-dvr4104:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-05-02 18:29

Updated : 2024-02-28 16:25


NVD link : CVE-2018-10676

Mitre link : CVE-2018-10676

CVE.ORG link : CVE-2018-10676


JSON object : View

Products Affected

tbkvision

  • tbk-dvr4216
  • tbk-dvr4104_firmware
  • tbk-dvr4216_firmware
  • tbk-dvr4104