Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-41419
QVIS NVR DVR before 2021-12-13 is vulnerable to Remote Code Execution via Java deserialization.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.03
EPSS Ranking
86.1%
CVSS Severity
CVSS v3 Score
9.8
References
https://gist.github.com/Meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee/712ac36c8a08e2698e875169442a23a4
https://github.com/projectdiscovery/nuclei-templates/blob/master/iot/qvisdvr-deserialization-rce.yaml
https://twitter.com/Me9187/status/1414904314368348163
https://gist.github.com/Meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee/712ac36c8a08e2698e875169442a23a4
https://github.com/projectdiscovery/nuclei-templates/blob/master/iot/qvisdvr-deserialization-rce.yaml
https://twitter.com/Me9187/status/1414904314368348163
Products affected by CVE-2021-41419
Qvis
»
Dvr
»
Version:
N/A
cpe:2.3:h:qvis:dvr:-
Qvis
»
Nvr
»
Version:
N/A
cpe:2.3:h:qvis:nvr:-
Qvis
»
Dvr Firmware
»
Version:
Any
cpe:2.3:o:qvis:dvr_firmware:*
Qvis
»
Nvr Firmware
»
Version:
Any
cpe:2.3:o:qvis:nvr_firmware:*
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved