Vulnerabilities > Geutebrueck > G CAM EBC 2110 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-09-13 CVE-2021-33543 Missing Authentication for Critical Function vulnerability in Geutebrueck products
Multiple camera devices by UDP Technology, Geutebrück and other vendors allow unauthenticated remote access to sensitive files due to default user authentication settings.
network
low complexity
geutebrueck CWE-306
critical
9.8
2020-08-14 CVE-2020-16205 OS Command Injection vulnerability in Geutebrueck products
Using a specially crafted URL command, a remote authenticated user can execute commands as root on the G-Cam and G-Code (Firmware Versions 1.12.0.25 and prior as well as the limited Versions 1.12.13.2 and 1.12.14.5).
network
low complexity
geutebrueck CWE-78
critical
9.0
2020-01-17 CVE-2019-10956 OS Command Injection vulnerability in Geutebrueck products
Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated user, using a specially crafted URL command, to execute commands as root.
network
low complexity
geutebrueck CWE-78
critical
9.0
2020-01-17 CVE-2019-10958 OS Command Injection vulnerability in Geutebrueck products
Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated attacker with access to network configuration to supply system commands to the server, leading to remote code execution as root.
network
low complexity
geutebrueck CWE-78
critical
9.0