First published: Thu Jun 14 2018(Updated: )
Web Viewer for Hanwha DVR 2.17 and Smart Viewer in Samsung Web Viewer for Samsung DVR are vulnerable to XSS via the /cgi-bin/webviewer_login_page data3 parameter. (The same Web Viewer codebase was transitioned from Samsung to Hanwha.)
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung SmartViewer | ||
Hanwha-security Hrd-1642 Firmware | <=1.16 | |
Hanwha-security Hrd-1642 | ||
Hanwha-security Hrd-842 Firmware | <=1.16 | |
Hanwha-security Hrd-842 | ||
Hanwha-security Hrd-442 Firmware | <=1.16 | |
Hanwha-security Hrd-442 | ||
Hanwha-security Hrd-1641 Firmware | <=1.14 | |
Hanwha-security Hrd-1641 | ||
Hanwha-security Hrd-841 Firmware | <=1.14 | |
Hanwha-security Hrd-841 | ||
Hanwha-security Hrd-840 Firmware | <=1.14 | |
Hanwha-security Hrd-840 | ||
Hanwha-security Hrd-440 Firmware | <=1.14 | |
Hanwha-security Hrd-440 | ||
Hanwha-security Hrd-443 Firmware | <=1.14 | |
Hanwha-security Hrd-443 | ||
Hanwha-security Srd-1694u Firmware | <=1.14 | |
Hanwha-security Srd-1694u |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.