CVE-2024-3721
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2024-3721 is a critical vulnerability affecting TBK DVR-4104 and DVR-4216 devices up to version 20240412. This issue arises from a processing flaw in the handling of the file /device.rsp, specifically the argument "mdb/mdc." An attacker can exploit this vulnerability through manipulation of this argument to inject operating system commands. The attack can be initiated remotely, making it a significant threat. The exploit for this vulnerability has been disclosed to the public, increasing the risk of potential attacks. The Vulnerability Database has assigned the identifier VDB-260573 to this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.