216.73.216.233

CVE-2024-3721

· Published 13/04/2024 14:15 · Modified 21/12/2025 14:57 · Author: The MITRE Corporation

Labels: CVE-2024-3721

Essential information

Published
13/04/2024 14:15
Modified
21/12/2025 14:57
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
6.3 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/C:L/I:L/A:L

CVSS metrics

Description

A vulnerability was found in TBK DVR-4104 and DVR-4216 up to 20240412 and classified as critical. This issue affects some unknown processing of the file /device.rsp?opt=sys&cmd=___S_O_S_T_R_E_A_MAX___. The manipulation of the argument mdb/mdc leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-260573 was assigned to this vulnerability.

NVD status

NVD
View on NVD