A vulnerability was found in TBK DVR-4104 and DVR-4216 up to 20240412 and classified as critical. This issue affects some unknown processing of the file /device.rsp?opt=sys&cmd=___S_O_S_T_R_E_A_MAX___. The manipulation of the argument mdb/mdc leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-260573 was assigned to this vulnerability.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-04-13T12:00:04.795Z

Updated: 2024-08-01T20:20:00.692Z

Reserved: 2024-04-12T17:19:17.559Z

Link: CVE-2024-3721

cve-icon Vulnrichment

Updated: 2024-08-01T20:20:00.692Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-13T12:15:12.087

Modified: 2024-05-17T02:40:05.290

Link: CVE-2024-3721

cve-icon Redhat

No data.