CVE-2021-41506
Xiaongmai AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, HI3518_50H10L_S39 V4.02.R11.7601.Nat.Onvif.20170420, V4.02.R11.Nat.Onvif.20160422, V4.02.R11.7601.Nat.Onvif.20170424, V4.02.R11.Nat.Onvif.20170327, V4.02.R11.Nat.Onvif.20161205, V4.02.R11.Nat.20170301, V4.02.R12.Nat.OnvifS.20170727 is affected by a backdoor in the macGuarder and dvrHelper binaries of DVR/NVR/IP camera firmware due to static root account credentials in the system.
Published:Jun 30, 2022
Last Modified:Nov 21, 2024
EPS:Jun 30, 2022
EPSS Score:0.0098
CVSS Score:9.8
Affected Products
Vendor
Product
Action
Vendor
Xiongmaitech
Product
Ahb7008t-mh-v2
Xiongmaitech
Ahb7008t-mh-v2
Vendor
Xiongmaitech
Product
Ahb7008t-mh-v2 Firmware
Xiongmaitech
Ahb7008t-mh-v2 Firmware
Vendor
Xiongmaitech
Product
Ahb7804r-els
Xiongmaitech
Ahb7804r-els
Vendor
Xiongmaitech
Product
Ahb7804r-els Firmware
Xiongmaitech
Ahb7804r-els Firmware
Vendor
Xiongmaitech
Product
Ahb7804r-lms
Xiongmaitech
Ahb7804r-lms
Vendor
Xiongmaitech
Product
Ahb7804r-lms Firmware
Xiongmaitech
Ahb7804r-lms Firmware
Vendor
Xiongmaitech
Product
Ahb7804r-mh-v2
Xiongmaitech
Ahb7804r-mh-v2
Vendor
Xiongmaitech
Product
Ahb7804r-mh-v2 Firmware
Xiongmaitech
Ahb7804r-mh-v2 Firmware
Vendor
Xiongmaitech
Product
Ahb7808r-ms
Xiongmaitech
Ahb7808r-ms
Vendor
Xiongmaitech
Product
Ahb7808r-ms-v2
Xiongmaitech
Ahb7808r-ms-v2
Vendor
Xiongmaitech
Product
Ahb7808r-ms-v2 Firmware
Xiongmaitech
Ahb7808r-ms-v2 Firmware
Vendor
Xiongmaitech
Product
Ahb7808r-ms Firmware
Xiongmaitech
Ahb7808r-ms Firmware
Vendor
Xiongmaitech
Product
Ahb7808t-ms-v2
Xiongmaitech
Ahb7808t-ms-v2
Vendor
Xiongmaitech
Product
Ahb7808t-ms-v2 Firmware
Xiongmaitech
Ahb7808t-ms-v2 Firmware
Vendor
Xiongmaitech
Product
Hi3518e 50h10l S39
Xiongmaitech
Hi3518e 50h10l S39
Vendor
Xiongmaitech
Product
Hi3518e 50h10l S39 Firmware
Xiongmaitech
Hi3518e 50h10l S39 Firmware
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
