Vulnerability Details CVE-2022-26259
A buffer over flow in Xiongmai DVR devices NBD80X16S-KL, NBD80X09S-KL, NBD80X08S-KL, NBD80X09RA-KL, AHB80X04R-MH, AHB80X04R-MH-V2, AHB80X04-R-MH-V3, AHB80N16T-GS, AHB80N32F4-LME, and NBD90S0VT-QW allows attackers to cause a Denial of Service (DoS) via a crafted RSTP request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.043
EPSS Ranking 88.3%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Products affected by CVE-2022-26259
-
cpe:2.3:h:xiongmaitech:ahb80n16t-gs:-
-
cpe:2.3:h:xiongmaitech:ahb80n32f4-lme:-
-
cpe:2.3:h:xiongmaitech:ahb80x04-r-mh-v3:-
-
cpe:2.3:h:xiongmaitech:ahb80x04r-mh-v2:-
-
cpe:2.3:h:xiongmaitech:ahb80x04r-mh:-
-
cpe:2.3:h:xiongmaitech:nbd80x08s-kl:-
-
cpe:2.3:h:xiongmaitech:nbd80x09ra-kl:-
-
cpe:2.3:h:xiongmaitech:nbd80x09s-kl:-
-
cpe:2.3:h:xiongmaitech:nbd80x16s-kl:-
-
cpe:2.3:h:xiongmaitech:nbd90s0vt-qw:-
-
cpe:2.3:o:xiongmaitech:ahb80n16t-gs_firmware:4.03.r11.7601.nat.onvifc.20211223
-
cpe:2.3:o:xiongmaitech:ahb80n32f4-lme_firmware:4.03.r11.7601.nat.onvifc.20211228
-
cpe:2.3:o:xiongmaitech:ahb80x04-r-mh-v3_firmware:4.03.r11.nat.dss.onvifc.20210729
-
cpe:2.3:o:xiongmaitech:ahb80x04r-mh-v2_firmware:4.03.r11.nat.dss.onvifc.20210729
-
cpe:2.3:o:xiongmaitech:ahb80x04r-mh_firmware:4.03.r11.nat.dss.onvifc.20210729
-
cpe:2.3:o:xiongmaitech:nbd80x08s-kl_firmware:4.03.r11.nat.dss.onvifc.20210727
-
cpe:2.3:o:xiongmaitech:nbd80x09ra-kl_firmware:4.03.r11.nat.dss.onvifc.20210727
-
cpe:2.3:o:xiongmaitech:nbd80x09s-kl_firmware:4.03.r11.nat.dss.onvifc.20210727
-
cpe:2.3:o:xiongmaitech:nbd80x16s-kl_firmware:4.03.r11.nat.dss.onvifc.20210727
-
cpe:2.3:o:xiongmaitech:nbd90s0vt-qw_firmware:4.03.r11.713g.nat.onvifc.2021