Known vulnerabilities in NUUO NVRmini 2
Vendor:
NUUO Inc.
Software:
NUUO NVRmini 2
Software CPE:
cpe:2.3:a:nuuo:nvrmini:*:*:*:*:*:*:*:*
Website:
https://www.nuuo.com/
Total vulnerabilities:
5
Public exploits:
2
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU16228 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-14933 |
CWE-78 | High | - | 04.12.2018 |
SB2018072103 |
||
| #VU16212 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-15716 |
CWE-78 | High | 3.10.0 | 30.11.2018 |
SB2018120307 |
||
| #VU14816 - Unrestricted Upload of File with Dangerous Type CVE-2018-11523 |
CWE-434 | High | 3.9.1 | 20.09.2018 |
SB2018092003 SB2019050804 SB2019040224 |
||
| #VU14815 - Incorrect Permission Assignment for Critical Resource CVE-2018-1150 |
CWE-732 | Critical | 3.9.1 | 20.09.2018 |
SB2018092003 |
||
| #VU14814 - Memory corruption CVE-2018-1149 |
CWE-119 | High | 3.9.1 | 20.09.2018 |
SB2018092003 |