Vulnerability Details CVE-2016-5680
Stack-based buffer overflow in cgi-bin/cgi_main in NUUO NVRmini 2 1.7.6 through 3.0.0 and NETGEAR ReadyNAS Surveillance 1.1.2 allows remote authenticated users to execute arbitrary code via the sn parameter to the transfer_license command.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.102
EPSS Ranking 92.7%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2016-5680
-
cpe:2.3:a:netgear:readynas_surveillance:1.1.2
-
cpe:2.3:o:nuuo:nvrmini_2:1.7.6
-
cpe:2.3:o:nuuo:nvrmini_2:2.0.0
-
cpe:2.3:o:nuuo:nvrmini_2:2.2.1
-
cpe:2.3:o:nuuo:nvrmini_2:3.0.0