Vulnerabilidades em Nuuo
11 resultadosCVE-2025-1338MEDIUMNUUO Camera handle_config.php print_file command injectionEPSS 51.9%CVE-2018-17888—NUUO CMS all versions 3.1 and prior, The application uses a session identification mechanism that could allow attackers to obtain the activeEPSS 29.6%CVE-2018-15716—NUUO NVRMini2 version 3.9.1 is vulnerable to authenticated remote command injection. An attacker can send crafted requests to upgrade_handleEPSS 18.5%CVE-2018-1149—cgi_system in NUUO's NVRMini2 3.8.0 and below allows remote attackers to execute arbitrary code via crafted HTTP requests.EPSS 15.2%CVE-2018-17890—NUUO CMS all versions 3.1 and prior, The application uses insecure and outdated software components for functionality, which could allow arbEPSS 3.3%CVE-2016-6553—Nuuo NT-4040 Titan, firmware NT-4040_01.07.0000.0015_1120, uses default credentialsEPSS 2.9%CVE-2018-17892—NUUO CMS all versions 3.1 and prior, The application implements a method of user account control that causes standard account security featuEPSS 2.8%CVE-2018-17894—NUUO CMS all versions 3.1 and prior, The application creates default accounts that have hard-coded passwords, which could allow an attacker EPSS 2.4%CVE-2018-1150—NUUO's NVRMini2 3.8.0 and below contains a backdoor that would allow an unauthenticated remote attacker to take over user accounts if the fiEPSS 1.9%CVE-2016-15038MEDIUMNUUO NVRmini 2 deletefile.php path traversalEPSS 0.8%CVE-2024-2995MEDIUMNUUO Camera deletefile.php denial of serviceEPSS 0.6%