Executive brief
Amcrest cameras and NVR devices are vulnerable to a stack-based buffer overflow on port 37777. A remote authenticated attacker can exploit this to cause a denial-of-service (crash) or potentially execute arbitrary code on the device.
Affected products
- Amcrest IP2M-841-V3 Firmware < v2.800.0000000.6.r.200314
- Amcrest IP2M-841 Firmware < v2.420.ac00.18.r.20200217
- Amcrest IP2M-853EW Firmware < v2.623.00ac004.0.r.200316
- Amcrest IP8M-2454EW Firmware < v2.622.00ac000.0.r.200320
- Amcrest IP8M-2597E Firmware < v2.800.00ac000.0.r.200330
- Amcrest NVR Firmware
Timeline
- 2020-04-09: disclosed: Initial analysis by NIST
- 2021-11-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog