Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenticated remote attacker can abuse this issue to crash the device and possibly execute arbitrary code.

Subscriptions

Vendors Products
Amcrest Subscribe
1080-lite 8ch Subscribe
1080-lite 8ch Firmware Subscribe
Amdv10814-h5 Subscribe
Amdv10814-h5 Firmware Subscribe
Ip2m-841 Subscribe
Ip2m-841-v3 Subscribe
Ip2m-841-v3 Firmware Subscribe
Ip2m-841 Firmware Subscribe
Ip2m-853ew Subscribe
Ip2m-853ew Firmware Subscribe
Ip2m-858w Subscribe
Ip2m-858w Firmware Subscribe
Ip2m-866ew Subscribe
Ip2m-866ew Firmware Subscribe
Ip2m-866w Subscribe
Ip2m-866w Firmware Subscribe
Ip4m-1053ew Subscribe
Ip4m-1053ew Firmware Subscribe
Ip8m-2454ew Subscribe
Ip8m-2454ew Firmware Subscribe
Ip8m-2493eb Subscribe
Ip8m-2493eb Firmware Subscribe
Ip8m-2496eb Subscribe
Ip8m-2496eb Firmware Subscribe
Ip8m-2597e Subscribe
Ip8m-2597e Firmware Subscribe
Ip8m-mb2546ew Subscribe
Ip8m-mb2546ew Firmware Subscribe
Ip8m-mt2544ew Subscribe
Ip8m-mt2544ew Firmware Subscribe
Ip8m-t2499ew Subscribe
Ip8m-t2499ew Firmware Subscribe
Ipm-721 Subscribe
Ipm-721 Firmware Subscribe
Ipm-hx1 Subscribe
Ipm-hx1 Firmware Subscribe

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 22 Oct 2025 00:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Thu, 06 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2021-11-03'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2025-10-21T23:35:47.086Z

Reserved: 2020-01-06T00:00:00.000Z

Link: CVE-2020-5735

cve-icon Vulnrichment

Updated: 2024-08-04T08:39:25.700Z

cve-icon NVD

Status : Analyzed

Published: 2020-04-08T13:15:13.003

Modified: 2025-10-31T22:11:22.050

Link: CVE-2020-5735

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses