CWE
78 77
Advisory Published
Updated

CVE-2021-30166: OS Command Injection

First published: Wed Apr 28 2021(Updated: )

The NTP Server configuration function of the IP camera device is not verified with special parameters. Remote attackers can perform a command Injection attack and execute arbitrary commands after logging in with the privileged permission.

Credit: twcert@cert.org.tw

Affected SoftwareAffected VersionHow to fix
Meritlilin P2r8852e2 Firmware<7.1.94.8908
Meritlilin P2r8852e2
Meritlilin P2r8852e4 Firmware<7.1.94.8908
Meritlilin P2r8852e4
Meritlilin P2r6852e2 Firmware<7.1.94.8908
Meritlilin P2r6852e2
Meritlilin P2r6852e4 Firmware<7.1.94.8908
Meritlilin P2r6852e4
Meritlilin P2r6552e2 Firmware<7.1.94.8908
Meritlilin P2r6552e2
Meritlilin P2r6552e4 Firmware<7.1.94.8908
Meritlilin P2r6552e4
Meritlilin P2r6352ae2 Firmware<7.1.94.8908
Meritlilin P2r6352ae2
Meritlilin P2r6352ae4 Firmware<7.1.94.8908
Meritlilin P2r6352ae4
Meritlilin P2r3052ae2 Firmware<7.1.94.8908
Meritlilin P2r3052ae2
Meritlilin P2g1052 Firmware<7.1.94.8908
Meritlilin P2g1052
Meritlilin P2r8822e2 Firmware<7.1.94.8908
Meritlilin P2r8822e2
Meritlilin P2r8822e4 Firmware<7.1.94.8908
Meritlilin P2r8822e4
Meritlilin P2r6822e2 Firmware<7.1.94.8908
Meritlilin P2r6822e2
Meritlilin P2r6822e4 Firmware<7.1.94.8908
Meritlilin P2r6822e4
Meritlilin P2r6522e2 Firmware<7.1.94.8908
Meritlilin P2r6522e2
Meritlilin P2r6522e4 Firmware<7.1.94.8908
Meritlilin P2r6522e4
Meritlilin P2r6322ae2 Firmware<7.1.94.8908
Meritlilin P2r6322ae2
Meritlilin P2r6322ae4 Firmware<7.1.94.8908
Meritlilin P2r6322ae4
Meritlilin P2r3022ae2 Firmware<7.1.94.8908
Meritlilin P2r3022ae2
Meritlilin P2g1022 Firmware<7.1.94.8908
Meritlilin P2g1022
Meritlilin P2g1022x Firmware<7.1.94.8908
Meritlilin P2g1022x
Meritlilin Z2r8852ax Firmware<7.1.94.8908
Meritlilin Z2r8852ax
Meritlilin Z2r8152x-p Firmware<7.1.94.8908
Meritlilin Z2r8152x-p
Meritlilin Z2r8152x2-p Firmware<7.1.94.8908
Meritlilin Z2r8152x2-p
Meritlilin Z2r8052ex25 Firmware<7.1.94.8908
Meritlilin Z2r8052ex25
Meritlilin Z2r6552x Firmware<7.1.94.8908
Meritlilin Z2r6552x
Meritlilin Z2r6452ax Firmware<7.1.94.8908
Meritlilin Z2r6452ax
Meritlilin Z2r6452ax-p Firmware<7.1.94.8908
Meritlilin Z2r6452ax-p
Meritlilin Z2r8822ax Firmware<7.1.94.8908
Meritlilin Z2r8822ax
Meritlilin Z2r8122x-p Firmware<7.1.94.8908
Meritlilin Z2r8122x-p
Meritlilin Z2r8122x2-p Firmware<7.1.94.8908
Meritlilin Z2r8122x2-p
Meritlilin Z2r8022ex25 Firmware<7.1.94.8908
Meritlilin Z2r8022ex25
Meritlilin Z2r6522x Firmware<7.1.94.8908
Meritlilin Z2r6522x
Meritlilin Z2r6422ax Firmware<7.1.94.8908
Meritlilin Z2r6422ax
Meritlilin Z2r6422ax-p Firmware<7.1.94.8908
Meritlilin Z2r6422ax-p
Meritlilin P3r6322e2 Firmware<7.1.94.8908
Meritlilin P3r6322e2
Meritlilin P3r6522e2 Firmware<7.1.94.8908
Meritlilin P3r6522e2
Meritlilin P3r8822e2 Firmware<7.1.94.8908
Meritlilin P3r8822e2
Meritlilin Z3r6422x3 Firmware<7.1.94.8908
Meritlilin Z3r6422x3
Meritlilin Z3r6522x Firmware<7.1.94.8908
Meritlilin Z3r6522x
Meritlilin Z3r8922x3 Firmware<7.1.94.8908
Meritlilin Z3r8922x3

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203