CVE-2024-7029: Command Injection in AVTech AVM1203 (IP Camera)
Published Aug 2, 2024
·Updated
Commands can be injected over the network and executed without authentication.
Affected Software
2 affected components
All of the following
AVTECH Avm1203 Firmware<=fullimg-1023-1007-1011-1009
AVTECH AVM1203
Event History
Aug 2, 2024
CVE Published
via MITRE·03:08 PM
Data Sourced
via MITRE·03:08 PM
RemedyDescriptionSeverityWeakness
Aug 29, 2024
News Published
via BleepingComputer·03:46 PM
News Published
via BleepingComputer·03:49 PM
Aug 31, 2024
News Published
via The Register·06:22 PM
News Published
via The Register·06:26 PM
Jan 21, 2025
News Published
via Dark Reading·06:09 PM
News Published
via Dark Reading·06:10 PM
Jan 25, 2025
Known Exploited
06:11 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-7029?
CVE-2024-7029 is considered a high-severity vulnerability due to the potential for remote command injection without authentication.
2
How do I fix CVE-2024-7029?
To mitigate CVE-2024-7029, it is recommended to update the Avtech Avm1203 Firmware to a version that addresses the vulnerability.
3
What types of devices are affected by CVE-2024-7029?
CVE-2024-7029 affects the Avtech Avm1203 camera and its associated firmware versions up to fullimg-1023-1007-1011-1009.
4
What exploits are being used in relation to CVE-2024-7029?
Active exploits of CVE-2024-7029 involve remote command injection that can enable attackers to gain control over vulnerable devices.
5
How can I detect if my system is vulnerable to CVE-2024-7029?
To detect vulnerability to CVE-2024-7029, check if your Avtech Avm1203 device is running an affected firmware version.