A command injection vulnerability exists that can be exploited after authentication in VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2.This issue affects VIGI NVR1104H-4P V1: before 1.1.5 Build 250518; VIGI NVR2016H-16MP V2: before 1.3.1 Build 250407.
Metrics
Affected Vendors & Products
References
History
Wed, 23 Jul 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 22 Jul 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A command injection vulnerability exists that can be exploited after authentication in VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2.This issue affects VIGI NVR1104H-4P V1: before 1.1.5 Build 250518; VIGI NVR2016H-16MP V2: before 1.3.1 Build 250407. | |
Title | Authenticated command injection on VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2 | |
Weaknesses | CWE-78 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: TPLink
Published: 2025-07-22T20:42:56.916Z
Updated: 2025-07-24T03:55:23.765Z
Reserved: 2025-07-16T17:55:21.789Z
Link: CVE-2025-7723

Updated: 2025-07-23T16:03:54.205Z

Status : Awaiting Analysis
Published: 2025-07-22T21:15:49.550
Modified: 2025-07-25T15:29:44.523
Link: CVE-2025-7723

No data.