CVE-2013-4982
critical · 9.8A public exploit / detection template exists
Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates →
AVTECH AVN801 DVR has a security bypass via the administration login captcha
9.8
CVSS
13.1%
EPSS (exploit prob.)
96th
EPSS percentile
2019-12-27
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-287
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| avtech | avn801_dvr_firmware | 1017-1003-1009-1003 |
| avtech | avn801_dvr | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://seclists.org/fulldisclosure/2013/Aug/284
- http://www.securityfocus.com/bid/62035
- https://www.coresecurity.com/advisories/avtech-dvr-multiple-vulnerabilities
- http://seclists.org/fulldisclosure/2013/Aug/284
- http://www.securityfocus.com/bid/62035
- https://www.coresecurity.com/advisories/avtech-dvr-multiple-vulnerabilities
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2013-4982