9.8
CVSSv3

CVE-2017-16725

Published: 20/12/2017 Updated: 12/01/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A Stack-based Buffer Overflow issue exists in Xiongmai Technology IP Cameras and DVRs using the NetSurveillance Web interface. The stack-based buffer overflow vulnerability has been identified, which may allow an malicious user to execute code remotely or crash the device. After rebooting, the device restores itself to a more vulnerable state in which Telnet is accessible.

Vulnerable Product Search on Vulmon Subscribe to Product

xiongmaitech ahb7008f8-h_firmware 4.02.r11.3070

xiongmaitech ahb7008f4-h_firmware 4.02.r11.3070

xiongmaitech ahb7008f2-h_firmware 4.02.r11.3070

xiongmaitech ahb7008t-mh-v2_firmware 4.02.r11.7601

xiongmaitech ahb7004t-mh-v2_firmware 4.02.r11.7601

xiongmaitech ahb7004t-h-v2_firmware 4.02.r11.7601

xiongmaitech ahb7016t-lm-v2_firmware 4.02.r11.7601

xiongmaitech ahb7008t-lm-v2_firmware 4.02.r11.7601

xiongmaitech ahb7016t4-mh-v2_firmware 4.02.r11.7601

xiongmaitech ahb7016t-mh-v2_firmware 4.02.r11.7601

xiongmaitech ahb7008t4-h-v2_firmware 4.02.r11.7601

xiongmaitech ahb7008t-h-v2_firmware 4.02.r11.7601

xiongmaitech ahb7008t4-h-v2 _firmware

xiongmaitech ahb7032f8-lm-v2_firmware 4.02.r11.7601

xiongmaitech ahb7032f4-lm-v2_firmware 4.02.r11.7601

xiongmaitech ahb7808r-ms-v3_firmware 4.02.r11.nat.onvifc.20170327

xiongmaitech ahb7804r-ms-v3_firmware 4.02.r11.nat.onvifc.20170327

xiongmaitech ahb7016t-lm-v3_firmware 4.02.r11.3070

xiongmaitech ahb7008t-lm-v3_firmware 4.02.r11.3070

xiongmaitech ahb7004t-lm-v3_firmware 4.02.r11.3070

xiongmaitech ahb7016t4-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7016t-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7008t-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7004t-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7016t-mh-v3_firmware 4.02.r11.7601

xiongmaitech ahb7008t-mh-v3_firmware 4.02.r11.7601

xiongmaitech ahb7004t-mh-v3_firmware 4.02.r11.7601

xiongmaitech ahb7008t-gl-v4_firmware 4.02.r11.7601

xiongmaitech ahb7004t-gl-v4_firmware 4.02.r11.7601

xiongmaitech ahb7004t-g-v4_firmware 4.02.r11.7601

xiongmaitech ahb7016f8-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7016f8-gl-v4_firmware 4.02.r11.7601

xiongmaitech ahb7016f4-gl-v4_firmware 4.02.r11.7601

xiongmaitech ahb7016f2-gl-v4_firmware 4.02.r11.7601

xiongmaitech ahb7808r-lm-v3_firmware 4.02.r11.nat.onvifc.20171120

xiongmaitech ahb7804r-lm-v3_firmware 4.02.r11.nat.onvifc.20171120

xiongmaitech ahb7804r-lms-v3_firmware 4.02.r11.nat.onvifc.20171019

xiongmaitech ahb7008f8-g-v4_firmware 4.02.r11.7601

xiongmaitech ahb7008f4-g-v4_firmware 4.02.r11.7601

xiongmaitech ahb7008f2-g-v4_firmware 4.02.r11.7601

xiongmaitech ahb7032f4-lm-v3_firmware 4.02.r11.7601

xiongmaitech ahb7032f2-lm-v3_firmware 4.02.r11.7601

xiongmaitech ahb7032f8-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7032f4-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7032f2-gs-v3_firmware 4.02.r11.7601

xiongmaitech ahb7016t-lme-v3_firmware 4.02.r11.7601

xiongmaitech ahb7008t-lme-v3_firmware 4.02.r11.7601

xiongmaitech ahb7004t-lme-v3_firmware 4.02.r11.7601

xiongmaitech ahb7808r-mh-v3_firmware 4.02.r11.7601

xiongmaitech ahb7804r-mh-v3_firmware 4.02.r11.7601

xiongmaitech ipg-50h10pl-p_firmware -

xiongmaitech ipg-50h10pl-b_firmware -

xiongmaitech ipg-50h10pl-ae_firmware -

xiongmaitech ipg-50h10pl-s_firmware -

xiongmaitech ipg-52h10pl-p_firmware -

xiongmaitech ipg-52h10pl-b_firmware -

xiongmaitech ipg-53h13pet-s_firmware -

xiongmaitech ipg-53h13pls-s_firmware -

xiongmaitech ipg-53h13pes-s_firmware -

xiongmaitech ipg-53h13pes-sl_firmware -

xiongmaitech ipg-53h13pl-p_firmware -

xiongmaitech ipg-53h13pl-b_firmware -

xiongmaitech ipg-53h13pl-ae_firmware -

xiongmaitech ipg-53h13pl-s_firmware -

xiongmaitech ipg-53h13p-p_firmware -

xiongmaitech ipg-53h13p-b_firmware -

xiongmaitech ipg-53h13p-ae_firmware -

xiongmaitech ipg-53h13p-s_firmware -

xiongmaitech ipg-83h40pl-b_firmware -

xiongmaitech ipg-83h40pl-p_firmware -

xiongmaitech ipg-83h50p-p_firmware -

xiongmaitech ipg-83h50p-b_firmware -

xiongmaitech ipg-53h10pe-s_firmware -

xiongmaitech ipg-50h10pe-sl_firmware -

xiongmaitech ipg-50h10pe-s_firmware -

xiongmaitech ipm-50hv10pt-wr_firmware -

xiongmaitech ipm-50v10pl-wr_firmware -

xiongmaitech ipm-50h10pe-wr_firmware -

xiongmaitech ipg-54h13pe-s_firmware -

xiongmaitech ipg-54h20pl-s_firmware -

xiongmaitech ipg-50h10pl-r_firmware -

xiongmaitech ipm-50h10pe-o\\(r\\)_firmware -

xiongmaitech ipg-53h13pl-r_firmware -

xiongmaitech ipg-50h10pe-wp_firmware -

xiongmaitech ipg-50hv10pt-wp_firmware -

xiongmaitech ipg-53hv13pa-wp_firmware -

xiongmaitech ipg-53h13pe-wp_firmware -

xiongmaitech ipg-53h20pl-p_firmware -

xiongmaitech ipg-53h20pl-b_firmware -

xiongmaitech ipg-53h20pl-ae_firmware -

xiongmaitech ipg-53h20pl-s_firmware -

xiongmaitech ipg-50hv20pet-a_firmware -

xiongmaitech ipg-50hv20pet-s_firmware -

xiongmaitech ipg-50hv20pes-s_firmware -

xiongmaitech ipg-50h10pe-wk_firmware -

xiongmaitech ipg-53h13pe-wk_firmware -

xiongmaitech ipg-53h13pe-s_firmware -

xiongmaitech ipm-50h10pe-wrm_firmware -

xiongmaitech ipm-53h13pe-wrm_firmware -

xiongmaitech ipg-83h40af_firmware -

xiongmaitech ipm-50v10pl-wrc_firmware -

xiongmaitech ipm-50h10pe-wrc_firmware -

xiongmaitech ipg-50x10pt-s_firmware -

xiongmaitech ipg-50x10pe-s_firmware -

xiongmaitech ipg-53x13pt-s_firmware -

xiongmaitech ipg-53x13pa-s_firmware -

xiongmaitech ipg-53x13pe-s_firmware -

xiongmaitech ipm-53h13pe-wrc_firmware -

xiongmaitech ipm-53hv13pe-wr_firmware -

xiongmaitech ipm-53v13pl-wr_firmware -

xiongmaitech ipm-53h13pe-wr_firmware -

xiongmaitech ipg-50h10pe-wk-2f_firmware -

xiongmaitech ipg-83h20pl-p_firmware -

xiongmaitech ipg-83h20pl-b_firmware -

xiongmaitech ipg-53hv13pt-s_firmware -

xiongmaitech ipg-53hv13pa-a_firmware -

xiongmaitech ipg-53hv13pa-s_firmware -

xiongmaitech ipm-50hv20pe-wr_firmware -

xiongmaitech ipg-50hv10pt-a_firmware -

xiongmaitech ipg-50hv10pt-s_firmware -

xiongmaitech ipg-50hv10pv-a_firmware -

xiongmaitech ipg-50hv10pv-s_firmware -

xiongmaitech ipg-80h20pt-a_firmware -

xiongmaitech ipg-80h20pt-s_firmware -

xiongmaitech ipg-50h20pt-s_firmware -

xiongmaitech ipg-53h20py-s_firmware -

xiongmaitech ipg-53h13pe-wk-4f_firmware -

xiongmaitech ipg-83h20pa-a_firmware -

xiongmaitech ipg-83h20pa-s_firmware -

xiongmaitech ipg-50hv20psa-s_firmware -

xiongmaitech ipg-50hv20psb-a_firmware -

xiongmaitech ipg-50hv20psb-s_firmware -

xiongmaitech ivg-hp203y-ae_firmware -

xiongmaitech ivg-hp203y-se_firmware -

xiongmaitech ipg-hp500nr-s_firmware -

xiongmaitech ipg-80he20ps-s_firmware -

Github Repositories

Python generated client for the Labs GraphQL API

Python GreyNoise Labs GraphQL Client & SDK This package provides a CLI and SDK to the GreyNoise Labs API service The GreyNoise Labs API provides access to the GreyNoise sensor datasets, including the raw sensor data, contextual metadata, and rapid prototyping utilities from the GreyNoise Labs team Please make sure you're always using the latest version of the C