First published: Thu Nov 16 2023(Updated: )
Missing authentication for critical function vulnerability in First Corporation's DVRs allows a remote unauthenticated attacker to rewrite or obtain the configuration information of the affected device. Note that updates are provided only for Late model of CFR-4EABC, CFR-4EAB, CFR-8EAB, CFR-16EAB, MD-404AB, and MD-808AB. As for the other products, apply the workaround.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
C-first Cfr-1004ea Firmware | ||
C-first Cfr-1004ea | ||
All of | ||
C-first Cfr-1008ea Firmware | ||
C-first Cfr-1008ea | ||
All of | ||
C-first Cfr-1016ea Firmware | ||
C-first Cfr-1016ea | ||
All of | ||
C-first Cfr-16eaa Firmware | ||
C-first Cfr-16eaa | ||
All of | ||
C-first Cfr-16eab Firmware | ||
C-first Cfr-16eab | ||
All of | ||
C-first Cfr-16eha Firmware | ||
C-first Cfr-16eha | ||
All of | ||
C-first Cfr-16ehd Firmware | ||
C-first Cfr-16ehd | ||
All of | ||
C-first Cfr-4eaa Firmware | ||
C-first Cfr-4eaa | ||
All of | ||
C-first Cfr-4eaam Firmware | ||
C-first Cfr-4eaam | ||
All of | ||
C-first Cfr-4eab Firmware | ||
C-first Cfr-4eab | ||
All of | ||
C-first Cfr-4eabc Firmware | ||
C-first Cfr-4eabc | ||
All of | ||
C-first Cfr-4eha Firmware | ||
C-first Cfr-4eha | ||
All of | ||
C-first Cfr-4ehd Firmware | ||
C-first Cfr-4ehd | ||
All of | ||
C-first Cfr-8eaa Firmware | ||
C-first Cfr-8eaa | ||
All of | ||
C-first Cfr-8eab Firmware | ||
C-first Cfr-8eab | ||
All of | ||
C-first Cfr-8eha Firmware | ||
C-first Cfr-8eha | ||
All of | ||
C-first Cfr-8ehd Firmware | ||
C-first Cfr-8ehd | ||
All of | ||
C-first Cfr-904e Firmware | ||
C-first Cfr-904e | ||
All of | ||
C-first Cfr-908e Firmware | ||
C-first Cfr-908e | ||
All of | ||
C-first Cfr-916e Firmware | ||
C-first Cfr-916e | ||
All of | ||
C-first Md-404aa Firmware | ||
C-first Md-404aa | ||
All of | ||
C-first Md-404ab Firmware | ||
C-first Md-404ab | ||
All of | ||
C-first Md-404ha Firmware | ||
C-first Md-404ha | ||
All of | ||
C-first Md-404hd Firmware | ||
C-first Md-404hd | ||
All of | ||
C-first Md-808aa Firmware | ||
C-first Md-808aa | ||
All of | ||
C-first Md-808ab Firmware | ||
C-first Md-808ab | ||
All of | ||
C-first Md-808ha Firmware | ||
C-first Md-808ha | ||
All of | ||
C-first Md-808hd Firmware | ||
C-first Md-808hd |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.