Vulnerabilities (CVE)

Filtered by vendor Nuuo Subscribe
Filtered by product Nvrmini2 Firmware
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-15716 1 Nuuo 5 Ne-2020, Ne-2040, Ne-4080 and 2 more 2019-10-09 9.0 HIGH 8.8 HIGH
NUUO NVRMini2 version 3.9.1 is vulnerable to authenticated remote command injection. An attacker can send crafted requests to upgrade_handle.php to execute OS commands as root.
CVE-2018-1150 1 Nuuo 2 Nvrmini2, Nvrmini2 Firmware 2019-10-03 7.5 HIGH 7.3 HIGH
NUUO's NVRMini2 3.8.0 and below contains a backdoor that would allow an unauthenticated remote attacker to take over user accounts if the file /tmp/moses exists.