CISA Known Exploited Vulnerability

CVE-2020-5735

Amcrest · Cameras and Network Video Recorder (NVR)

Amcrest Cameras and NVR Stack-based Buffer Overflow Vulnerability

Date added
BOD 22-01 due date
CWE CWE-121
Ransomware Unknown

CISA description

Amcrest cameras and NVR contain a stack-based buffer overflow vulnerability through port 37777 that allows an unauthenticated, remote attacker to crash the device and possibly execute code.

Required action

Apply updates per vendor instructions.