CVE Feed

    Dashboard / CVE / CVE-2019-14699

    CVE-2019-14699

    An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. An attacker can exploit OS Command Injection in the filename parameter for remote code execution as root. This occurs in the Mainproc executable file, which can be run from the HTTPD web server.

    Published:Aug 6, 2019
    Last Modified:Nov 21, 2024
    EPS:Aug 6, 2019
    EPSS Score:0.08487
    CVSS Score:9.8

    Affected Products

    Vendor
    Microdigital
    Product
    Mdc-n2190v
    Vendor
    Microdigital
    Product
    Mdc-n2190v Firmware
    Vendor
    Microdigital
    Product
    Mdc-n4090
    Vendor
    Microdigital
    Product
    Mdc-n4090 Firmware
    Vendor
    Microdigital
    Product
    Mdc-n4090w
    Vendor
    Microdigital
    Product
    Mdc-n4090w Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High