Skip to content

Instantly share code, notes, and snippets.

@Meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
Created February 15, 2022 20:01
Show Gist options
  • Save Meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee/712ac36c8a08e2698e875169442a23a4 to your computer and use it in GitHub Desktop.
Save Meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee/712ac36c8a08e2698e875169442a23a4 to your computer and use it in GitHub Desktop.
ID: CVE-2021-41419
Finder: me9187
Severity: Critical CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vendor: QVIS
Product: QVIS NVR Camera Management System
Version: All Firmware versions under 12/13/21
Description: Pre-Auth RCE via Java Deserialization
POC: https://github.com/projectdiscovery/nuclei-templates/blob/master/iot/qvisdvr-deserialization-rce.yaml
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment