CVE-2014-4880 – Hikvision DVR - RTSP Request Remote Code Execution
https://notcve.org/view.php?id=CVE-2014-4880
20 Nov 2014 — Buffer overflow in Hikvision DVR DS-7204 Firmware 2.2.10 build 131009, and other models and versions, allows remote attackers to execute arbitrary code via an RTSP PLAY request with a long Authorization header. Desbordamiento de buffer en Hikvision DVR DS-7204 Firmware 2.2.10 build 131009, y otros modelos y versiones, permite a atacantes remotos ejecutar código arbitrario a través de una solicitud RTSP PLAY con una cabecera de autorización larga. • https://www.exploit-db.com/exploits/35356 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2013-4975 – Hikvision IP Cameras 4.1.0 b130111 - Multiple Vulnerabilities
https://notcve.org/view.php?id=CVE-2013-4975
07 Aug 2013 — Hikvision DS-2CD7153-E IP Camera has Privilege Escalation Hikvision DS-2CD7153-E IP Camera, tiene una Escalada de Privilegios. • https://www.exploit-db.com/exploits/27402 • CWE-269: Improper Privilege Management •
CVE-2013-4976 – Hikvision IP Cameras 4.1.0 b130111 - Multiple Vulnerabilities
https://notcve.org/view.php?id=CVE-2013-4976
07 Aug 2013 — Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials Hikvision DS-2CD7153-E IP Camera, tiene una omisión de seguridad por medio de credenciales embebidas • https://www.exploit-db.com/exploits/27402 • CWE-287: Improper Authentication •
CVE-2013-4977 – Hikvision IP Cameras 4.1.0 b130111 - Multiple Vulnerabilities
https://notcve.org/view.php?id=CVE-2013-4977
07 Aug 2013 — Buffer overflow in the RTSP Packet Handler in Hikvision DS-2CD7153-E IP camera with firmware 4.1.0 b130111 (Jan 2013), and possibly other devices, allows remote attackers to cause a denial of service (device crash and reboot) and possibly execute arbitrary code via a long string in the Range header field in an RTSP transaction. Desbordamiento de buffer en el manejador de paquetes RTSP en la cámara Hikvision DS-2CD7153-E IP con firmware 4.1.0 b130111 (Jan 2013), y posiblemente otros dispositivos, permite a a... • https://www.exploit-db.com/exploits/27402 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •