CyberSec.Space Logo
Back to CVE Browser

CVE-2018-14933

Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
EPSS Score48.7330%
EPSS Percentile88.62th
PublishedAug 4, 2018
Last ModifiedNov 7, 2025

Vulnerability Description

upgrade_handle.php on NUUO NVRmini devices allows Remote Command Execution via shell metacharacters in the uploaddir parameter for a writeuploaddir command.

Affected Platforms (CPE)

πŸ’»
Nuuo

Nvrmini Firmware

= 2016

References & Advisories

Related Vulnerabilities