CVE-2018-1149: Buffer Overflow
Published Sep 19, 2018
·Updated
cgisystem in NUUO's NVRMini2 3.8.0 and below allows remote attackers to execute arbitrary code via crafted HTTP requests.
Affected Software
2 affected components
NUUO Nvrmini2 Firmware<=3.8.0
NUUO NVRMini2
Event History
Sep 19, 2018
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-1149?
CVE-2018-1149 is a vulnerability in cgi_system in NUUO's NVRMini2 3.8.0 and below that allows remote code execution via crafted HTTP requests.
2
How severe is CVE-2018-1149?
CVE-2018-1149 is rated as critical with a severity score of 9.8.
3
What software is affected by CVE-2018-1149?
NUUO's NVRMini2 firmware version up to and including 3.8.0 is affected by CVE-2018-1149.
4
How can I prevent exploitation of CVE-2018-1149?
To prevent exploitation of CVE-2018-1149, users should update NUUO's NVRMini2 firmware to a version that is not vulnerable.