漏洞描述 【漏洞对象】KONGTOP DVR设备 【涉及版本】KONGTOP DVR设备A303,A403,D303,D305和D403 【漏洞描述】 KONGTOPDVR设备A303,A403,D303,D305和D403存在一个telnet后门,会直接返回登录密码。
相关漏洞推荐 POC CVE-2021-41419: QVIS NVR/DVR - Remote Code Execution POC CVE-2018-15745: Argus Surveillance DVR 4.0.0.0 - Local File Inclusion POC CVE-2018-9995: TBK DVR4104/DVR4216 Devices - Authentication Bypass POC CVE-2021-42071: Visual Tools DVR VX16 4.2.28.0 - Unauthenticated OS Command Injection POC CVE-2024-7339: TVT DVR Sensitive Device - Information Disclosure POC CVE-2018-9995: DVR Authentication Bypass POC ec2-unrestricted-telnet: Restrict EC2 Telnet Access POC azure-nsg-telnet-unrestricted: Unrestricted Telnet Access in Azure NSGs POC avtech-dvr-exposure: Avtech AVC798HA DVR Information Exposure POC telnet-service-misconfiguration: Check for Misconfigured Telnet Service POC CVE-2013-4982: AVTECH DVR - Login Verification Code Bypass POC avtech-dvr-exposure: AVTECH AVC798HA DVR - Information Exposure POC qvisdvr-deserialization-rce: QVISDVR JSF Deserialization - Remote Code Execution