Hanwhavision
Hanwhavision Xnb-9003 Firmware: vulnerabilidades y CVE
Hanwhavision Xnb-9003 Firmware tiene 11 vulnerabilidades publicadas, 8 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE11
Últimos 12 meses8
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-54013 | Alta (8.7) | 0.19% | — | 28 abr 2026 | Penetration Testing engineers at Amazon have identified a security flaw related to request handling in the web server component that could, under certain conditions, lead to unintended access to protected functions. The… |
| CVE-2024-54012 | Alta (8.5) | 0.26% | — | 28 abr 2026 | Penetration Testing engineers at Amazon discovered a vulnerability where the camera system failed to properly validate input, allowing specially crafted requests containing malicious commands to be executed on the… |
| CVE-2024-54011 | Media (5.3) | 0.24% | — | 28 abr 2026 | Penetration Testing engineers at Amazon have discovered a flaw where the camera system fails to properly handle data supplied in certain requests, causing a service disruption. The manufacturer has released patch… |
| CVE-2025-52601 | Media (6.3) | 0.10% | — | 26 dic 2025 | Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered a vulnerability in Device Manager that a hardcoded encryption key for… |
| CVE-2025-52600 | Media (5.2) | 0.40% | — | 26 dic 2025 | Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered a vulnerability in camera video analytics that Improper input… |
| CVE-2025-52599 | Media (6.3) | 0.23% | — | 26 dic 2025 | Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered Inadequate of permission management for camera guest account. The… |
| CVE-2025-52598 | Media (6.3) | 0.18% | — | 26 dic 2025 | Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certificate validation.… |
| CVE-2025-8075 | Media (5.8) | 0.20% | — | 26 dic 2025 | Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered that validation of incoming XML format request messages is inadequate.… |
| CVE-2023-5038 | Alta (8.7) | 0.42% | — | 25 jun 2024 | badmonkey, a Security Researcher has found a flaw that allows for a unauthenticated DoS attack on the camera. An attacker runs a crafted URL, nobody can access the web management page of the camera. and must manually… |
| CVE-2023-5037 | Alta (7.1) | 1.5% | — | 13 nov 2023 | badmonkey, a Security Researcher has found a flaw that allows for a authenticated command injection on the camera. An attacker could inject malicious into request packets to execute command. The manufacturer has… |
| CVE-2023-31994 | Media (5.3) | 0.56% | — | 23 may 2023 | Certain Hanwha products are vulnerable to Denial of Service (DoS). ck vector is: When an empty UDP packet is sent to the listening service, the service thread results in a non-functional service (DoS) via WS Discovery… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.