5.3
CVSSv3

CVE-2023-3704

Published: 24/08/2023 Updated: 01/09/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The vulnerability exists in CP-Plus DVR due to an improper input validation within the web-based management interface of the affected products. An unauthenticated remote attacker could exploit this vulnerability by sending specially crafted HTTP requests to the vulnerable device. Successful exploitation of this vulnerability could allow the remote malicious user to change system time of the targeted device.

Vulnerable Product Search on Vulmon Subscribe to Product

cpplusworld cp-uvr-1601e1-hc_firmware

cpplusworld cp-uvr-0401l1-4kh_firmware

cpplusworld cp-uvr-0401l1b-4kh_firmware

cpplusworld cp-uvr-0801f1-hc_firmware

cpplusworld cp-uvr-0801k1-h_firmware

cpplusworld cp-uvr-0801k1b-h_firmware

cpplusworld cp-uvr-0808k1-h_firmware

cpplusworld cp-uvr-1601e1-h_firmware

cpplusworld cp-uvr-1601e2-h_firmware