The NcrCtl4.NcrNet.1 control in Panasonic Network Camera Recorder before 4.04R03 allows remote attackers to execute arbitrary code via a crafted GetVOLHeader method call, which writes null bytes to an arbitrary address.
References
Link | Resource |
---|---|
http://www.zerodayinitiative.com/advisories/ZDI-14-363/ | Third Party Advisory VDB Entry |
http://panasonic.net/pcc/cgi-bin/products/netwkcam/download_us/tbookmarka_m.cgi?m=%20&mm=2010073014092324 | Broken Link Patch |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2014-10-17 08:55
Updated : 2021-11-09 11:59
NVD link : CVE-2014-8756
Mitre link : CVE-2014-8756
JSON object : View
CWE
Products Affected
panasonic
- network_camera_recorder
- network_camera_recorder_firmware