From 13ee816d9c3b0ba12e9418d951bf7be49aed8fa7 Mon Sep 17 00:00:00 2001 From: Goby <50955360+gobysec@users.noreply.github.com> Date: Sat, 1 Apr 2023 12:38:50 +0800 Subject: [PATCH] Create CVE-2021-41419.md add CVE-2021-41419 --- CVE-2021-41419.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 CVE-2021-41419.md diff --git a/CVE-2021-41419.md b/CVE-2021-41419.md new file mode 100644 index 0000000..3a9ba26 --- /dev/null +++ b/CVE-2021-41419.md @@ -0,0 +1,12 @@ +## QVIS-NVR Camera Management System RCE (CVE-2021-41419) + +| **Vulnerability** | **QVIS-NVR Camera Management System RCE (CVE-2021-41419)** | +| :----: | :-----| +| **Chinese name** | QVIS-NVR Camera Management System JSF 反序列化漏洞(CVE-2021-41419)| +| **CVSS core** | 9.8 | +| **FOFA Query** (click to view the results directly)| [body="qvisBase.js"](https://fofa.info/result?qbase64=Ym9keT0icXZpc0Jhc2UuanMi) | +| **Number of assets affected** | 1801 | +| **Description** | QVIS NVR Camera Management System is a monitoring system of QVIS company. A security vulnerability exists in the QVIS NVR Camera Management System due to vulnerability to remote code execution via Java deserialization. | +| **Impact** | A security vulnerability exists in the QVIS NVR Camera Management System due to vulnerability to remote code execution via Java deserialization. | + +![](https://s3.bmp.ovh/imgs/2023/04/01/1f12fd865122acb3.gif)