mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-16 20:27:21 +00:00
19 lines
1014 B
Markdown
19 lines
1014 B
Markdown
|
|
### [CVE-2017-16725](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16725)
|
||
|
|

|
||
|
|

|
||
|
|

|
||
|
|
|
||
|
|
### Description
|
||
|
|
|
||
|
|
A Stack-based Buffer Overflow issue was discovered in Xiongmai Technology IP Cameras and DVRs using the NetSurveillance Web interface. The stack-based buffer overflow vulnerability has been identified, which may allow an attacker to execute code remotely or crash the device. After rebooting, the device restores itself to a more vulnerable state in which Telnet is accessible.
|
||
|
|
|
||
|
|
### POC
|
||
|
|
|
||
|
|
#### Reference
|
||
|
|
No PoCs from references.
|
||
|
|
|
||
|
|
#### Github
|
||
|
|
- https://github.com/KostasEreksonas/Besder-6024PB-XMA501-ip-camera-security-investigation
|
||
|
|
- https://github.com/bitfu/uc-httpd-1.0.0-buffer-overflow-exploit
|
||
|
|
|