Known Exploited Vulnerability: CVE-2018-14933

NUUO NVRmini Devices OS Command Injection Vulnerability

Catalog version: 2026.06.05 Date added: 2024-12-18 Due date: 2025-01-08 CISA catalog

Vendor: NUUO

Product: NVRmini Devices

Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.

Known ransomware campaign use: Unknown

Notes: https://nuuo.com/wp-content/uploads/2023/03/NUUO-EOL-letter%EF%BC%BFNVRmini-2-and-NVRsolo-series.pdf https://nvd.nist.gov/vuln/detail/CVE-2018-14933

CWEs

cvelogic Threat Intelligence