CVE-2019-9653: OS Command Injection
NUUO Network Video Recorder Firmware 1.7.x through 3.3.x allows unauthenticated attackers to execute arbitrary commands via shell metacharacters to handleloadconfig.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-9653?
CVE-2019-9653 is considered to be a high severity vulnerability due to its ability to allow unauthenticated attackers to execute arbitrary commands.
How do I fix CVE-2019-9653?
To fix CVE-2019-9653, users should update their NUUO Network Video Recorder firmware to the latest version beyond 3.3.0.
What versions are affected by CVE-2019-9653?
CVE-2019-9653 affects NUUO Network Video Recorder Firmware versions from 1.7.x to 3.3.x.
What types of attacks are possible with CVE-2019-9653?
CVE-2019-9653 allows attackers to execute arbitrary commands on the NUUO Network Video Recorder, posing a risk of system compromise.
Is authentication required to exploit CVE-2019-9653?
No, CVE-2019-9653 can be exploited by unauthenticated attackers, making it particularly dangerous.