Vulnerability Description
Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, allows remote attackers to cause a denial of service (device crash) and possibly execute arbitrary code via a long string in the Network.SMTP.Receivers parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Avtech | Avn801 Dvr Firmware | <= 1017-1003-1009-1003 |
| Avtech | Avn801 Dvr | - |
Related Weaknesses (CWE)
References
- http://osvdb.org/96693
- http://seclists.org/fulldisclosure/2013/Aug/284Exploit
- http://www.coresecurity.com/advisories/avtech-dvr-multiple-vulnerabilitiesExploit
- http://osvdb.org/96693
- http://seclists.org/fulldisclosure/2013/Aug/284Exploit
- http://www.coresecurity.com/advisories/avtech-dvr-multiple-vulnerabilitiesExploit
FAQ
What is CVE-2013-4981?
CVE-2013-4981 is a vulnerability with a CVSS score of 9.0 (HIGH). Buffer overflow in cgi-bin/user/Config.cgi in AVTECH AVN801 DVR with firmware 1017-1003-1009-1003 and earlier, and possibly other devices, allows remote attackers to cause a denial of service (device ...
How severe is CVE-2013-4981?
CVE-2013-4981 has been rated HIGH with a CVSS base score of 9.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-4981?
Check the references section above for vendor advisories and patch information. Affected products include: Avtech Avn801 Dvr Firmware, Avtech Avn801 Dvr.