CyberSec.Space Logo
Back to CVE Browser

CVE-2014-1201

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1220%
EPSS Percentile9.51th
PublishedJan 15, 2014
Last ModifiedApr 29, 2026

Vulnerability Description

Buffer overflow in the INetViewX ActiveX control in the Lorex Edge LH310 and Edge+ LH320 series with firmware 7-35-28-1B26E, Edge2 LH330 series with firmware 11.17.38-33_1D97A, and Edge3 LH340 series with firmware 11.19.85_1FE3A allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the HTTP_PORT parameter.

Affected Platforms (CPE)

πŸ“¦
Lorex Technology

Edge Lh310 Firmware

= 7-35-28-1b26e
πŸ”Œ
Lorextechnology

Edge

= lh310
πŸ“¦
Lorex Technology

Edge3 Lh340 Firmware

= 11.19.85_1fe3a
πŸ”Œ
Lorextechnology

Edge3

= lh340
πŸ“¦
Lorex Technology

Edge2 Lh330 Firmware

= 11.17.38-33_1d97a
πŸ”Œ
Lorextechnology

Edge2

= lh330
πŸ“¦
Lorex Technology

Edge\+ Lh320 Firmware

= 7-35-28-1b26e
πŸ”Œ
Lorextechnology

Edge\+

= lh320

References & Advisories

Related Vulnerabilities