In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 devices, root OS command injection can occur via shell metacharacters in the HostName value via an authenticated DVRIP protocol (TCP port 34567) request to the NetWork.NetCommon configuration handler, because system() is used.
Metrics
Affected Vendors & Products
References
History
Sun, 29 Mar 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Root OS Command Injection via HostName Field in Xiongmai DVR/NVR |
Sun, 29 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 devices, root OS command injection can occur via shell metacharacters in the HostName value via an authenticated DVRIP protocol (TCP port 34567) request to the NetWork.NetCommon configuration handler, because system() is used. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-03-29T17:02:15.445Z
Updated: 2026-03-29T17:09:28.999Z
Reserved: 2026-03-25T05:22:12.479Z
Link: CVE-2026-34005
No data.
Status : Received
Published: 2026-03-29T17:16:44.257
Modified: 2026-03-29T17:16:44.257
Link: CVE-2026-34005
No data.