Vulnerability Description
The TK_set_deviceModel_req_handle function in the cloud communication component in Guardzilla GZ621W devices with firmware 0.5.1.4 has a Buffer Overflow.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Guardzilla | Gz621W Firmware | 0.5.1.4 |
| Guardzilla | Gz621W | - |
Related Weaknesses (CWE)
References
- https://labs.bitdefender.com/2018/12/iot-report-major-flaws-in-guardzilla-cameraThird Party Advisory
- https://labs.bitdefender.com/2018/12/iot-report-major-flaws-in-guardzilla-cameraThird Party Advisory
FAQ
What is CVE-2018-18601?
CVE-2018-18601 is a vulnerability with a CVSS score of 8.1 (HIGH). The TK_set_deviceModel_req_handle function in the cloud communication component in Guardzilla GZ621W devices with firmware 0.5.1.4 has a Buffer Overflow.
How severe is CVE-2018-18601?
CVE-2018-18601 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-18601?
Check the references section above for vendor advisories and patch information. Affected products include: Guardzilla Gz621W Firmware, Guardzilla Gz621W.