← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-5736

Amcrest cameras and NVR are vulnerable to a null pointer dereference over port 37777. An authenticated remote attacker can abuse this issue to crash the device.

No Active Exploit Signals
CVSS Base Score
6.5
MEDIUM
EPSS Probability:1.58%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

Affected Products & Versions

Vendor Product Affected Versions
amcrest 1080-lite_8ch_firmware all
amcrest 1080-lite_8ch all
amcrest amdv10814-h5_firmware all
amcrest amdv10814-h5 all
amcrest ipm-721_firmware all
amcrest ipm-721 all
amcrest ip2m-841_firmware all
amcrest ip2m-841 all
amcrest ip2m-841-v3_firmware all
amcrest ip2m-841-v3 all
amcrest ip2m-853ew_firmware all
amcrest ip2m-853ew all
amcrest ip2m-858w_firmware all
amcrest ip2m-858w all
amcrest ip2m-866w_firmware all
amcrest ip2m-866w all
amcrest ip2m-866ew_firmware all
amcrest ip2m-866ew all
amcrest ip4m-1053ew_firmware all
amcrest ip4m-1053ew all
amcrest ip8m-2454ew_firmware all
amcrest ip8m-2454ew all
amcrest ip8m-2493eb_firmware all
amcrest ip8m-2493eb all
amcrest ip8m-2496eb_firmware all
amcrest ip8m-2496eb all
amcrest ip8m-2597e_firmware all
amcrest ip8m-2597e all
amcrest ip8m-mb2546ew_firmware all
amcrest ip8m-mb2546ew all
amcrest ip8m-mt2544ew_firmware all
amcrest ip8m-mt2544ew all
amcrest ip8m-t2499ew_firmware all
amcrest ip8m-t2499ew all
amcrest ipm-hx1_firmware all
amcrest ipm-hx1 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.585%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityTenable Network Security, Inc. · Vendor · USA
Reserved2020-01-06T00:00:00
Published2020-04-08T12:42:22
Last Updated2024-08-04T08:39:25

LINK COPIED TO CLIPBOARD