Vulnerabilities > Reolink
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-01-26 | CVE-2020-25169 | Cleartext Transmission of Sensitive Information vulnerability in Reolink products The affected Reolink P2P products do not sufficiently protect data transferred between the local device and Reolink servers. | 7.5 |
2019-04-08 | CVE-2019-11001 | OS Command Injection vulnerability in Reolink products On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the "TestEmail" functionality to inject and run OS commands as root, as demonstrated by shell metacharacters in the addr1 field. | 7.2 |