First published: Tue Dec 28 2021(Updated: )
NUUO Network Video Recorder NVRsolo 3.9.1 is affected by a Cross Site Scripting (XSS) vulnerability. An attacker can steal the user's session by injecting malicious JavaScript codes which leads to session hijacking.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nuuo NVRsolo Firmware | =3.9.1 | |
Nuuo NVRsolo Firmware | ||
All of | ||
Nuuo NVRsolo Firmware | =3.9.1 | |
Nuuo NVRsolo Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45812 has a severity level that allows attackers to potentially hijack user sessions through XSS vulnerabilities.
To mitigate CVE-2021-45812, it is recommended to upgrade to the latest version of NUUO NVRsolo firmware.
CVE-2021-45812 affects NUUO Network Video Recorder NVRsolo firmware version 3.9.1.
CVE-2021-45812 is associated with a Cross Site Scripting (XSS) attack that can lead to session hijacking.
Users of NUUO Network Video Recorder NVRsolo firmware version 3.9.1 are primarily impacted by CVE-2021-45812.