CVE Feed

    Dashboard / CVE / CVE-2023-5747

    CVE-2023-5747

    Bashis, a Security Researcher at IPVM has found a flaw that allows for a remote code execution during the installation of Wave on the camera device. The Wave server application in camera device was vulnerable to command injection allowing an attacker to run arbitrary code. HanwhaVision has released patched firmware for the highlighted flaw. Please refer to the hanwhavision security report for more information and solution."

    Published:Nov 13, 2023
    Last Modified:Nov 21, 2024
    EPS:Nov 13, 2023
    EPSS Score:0.00341
    CVSS Score:7.2

    Affected Products

    Vendor
    Hanwhavision
    Product
    Pno-a6081r-e1t
    Vendor
    Hanwhavision
    Product
    Pno-a6081r-e1t Firmware
    Vendor
    Hanwhavision
    Product
    Pno-a6081r-e2t
    Vendor
    Hanwhavision
    Product
    Pno-a6081r-e2t Firmware
    Vendor
    Hanwhavision
    Product
    Wave Server Software

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High