Title | Faraday Technology DVR GM828x, GM8181 OS Command Injection |
---|
Description | The Faraday Technology GM828x/GM8181 DVR devices have been found to contain a command injection vulnerability within the ntp_srv parameter. This vulnerability may allow an attacker to execute arbitrary system commands on the device with the privileges of the NTP process via a network command protocol, affecting over 27,000 Internet-connected devices. |
---|
Source | ⚠️ https://netsecfish.notion.site/Command-Injection-in-Faraday-Technology-GM828x-GM8181-DVR-1bc02d17ee5540a08273da2850e809c4?pvs=4 |
---|
User | netsecfish (ID 64568) |
---|
Submission | 04/29/2024 14:02 (17 days ago) |
---|
Moderation | 05/07/2024 06:57 (8 days later) |
---|
Status | Accepted |
---|
VulDB Entry | 263304 |
---|