dw CVE Vulnerabilities & CVE List (7)

Products (CPE): — CVEs: 7

dw vulnerability overview

Aggregates CVE and security vulnerability intelligence across all dw-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk cross-site scripting and vendor risk command injection; exposure may include vendor impact session compromise in vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-34540 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vca/license/license_tok.cgi. This vulnerability is exploitable via a crafted POST request. [email protected] 8.8 3.57% 2022-07-19 2024-11-21
CVE-2022-34539 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/curltest.cgi. This vulnerability is exploitable via a crafted POST request. [email protected] 8.8 3.57% 2022-07-19 2024-11-21
CVE-2022-34538 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vca/bia/addacph.cgi. This vulnerability is exploitable via a crafted POST request. [email protected] 8.8 3.15% 2022-07-19 2024-11-21
CVE-2022-34537 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the component bia_oneshot.cgi. [email protected] 5.4 0.21% 2022-07-19 2024-11-21
CVE-2022-34536 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a crafted session token. [email protected] 7.5 0.33% 2022-07-19 2024-11-21
CVE-2022-34535 Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files. [email protected] 7.5 0.77% 2022-07-19 2024-11-21
CVE-2022-34534 Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call. [email protected] 7.5 28.88% 2022-07-19 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence