Vulnerabilities > Swann

DATE CVE VULNERABILITY TITLE RISK
2020-03-21 CVE-2013-7487 Injection vulnerability in Swann products
On Swann DVR04B, DVR08B, DVR-16CIF, and DVR16B devices, raysharpdvr application has a vulnerable call to “system”, which allows remote attackers to execute arbitrary code via TCP port 9000.
network
swann CWE-74
6.8
2019-08-08 CVE-2018-20956 Information Exposure Through Log Files vulnerability in Swann Swwhd-Intcam-Hd Firmware
Swann SWWHD-INTCAM-HD devices leave the PSK in logs after a factory reset.
local
low complexity
swann CWE-532
2.1
2019-08-08 CVE-2018-20955 Use of Hard-coded Credentials vulnerability in Swann Swwhd-Intcam-Hd Firmware
Swann SWWHD-INTCAM-HD devices have the twipc root password, leading to FTP access as root.
network
low complexity
swann CWE-798
critical
10.0
2016-02-18 CVE-2015-8287 Authentication Bypass vulnerability in Swann SRNVW-470
Swann SRNVW-470LCD devices with firmware through 0114 and SWNVW-470CAM devices with firmware through 1022 allow remote attackers to watch live video by visiting an unspecified URL.
network
low complexity
swann
5.0