CVE-2019-10958

EUVD-2019-2672
Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated attacker with access to network configuration to supply system commands to the server, leading to remote code execution as root.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 72%
Affected Products (NVD)
VendorProductVersion
geutebrueckg-code_eec-2400_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ebc-2110_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ebc-2111_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_efd-2240_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_efd-2241_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_efd-2250_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ethc-2230_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ethc-2240_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ethc-2239_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ethc-2249_firmware
𝑥
≤ 1.12.0.25
geutebrueckg-cam_ewpc-2270_firmware
𝑥
≤ 1.12.0.25
𝑥
= Vulnerable software versions