← Back

Airlive

airlive

2 CVEs • 10 products

Products (10)

Click to collapse
Toggle
Bu 2015
bu-2015
Bu 3026
bu-3026
Md 3025
md-3025
Wl 2000cam
wl-2000cam
Poe 200cam V2
poe-200cam_v2

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Airlive
5Bu 2015 Firmware
Bu 3026 FirmwareMd 3025 Firmware+2 more
May 13, 2026
Dec 28, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
cgi-bin/mft/wireless_mft.cgi in AirLive BU-2015 with firmware 1.03.18 16.06.2014, AirLive BU-3026 with firmware 1.43 21.08.2014, AirLive MD-3025 with firmware 1.81 21.08.2014, AirLive WL-2000CAM with firmware LM.1.6.18 1...Show more
cgi-bin/mft/wireless_mft.cgi in AirLive BU-2015 with firmware 1.03.18 16.06.2014, AirLive BU-3026 with firmware 1.43 21.08.2014, AirLive MD-3025 with firmware 1.81 21.08.2014, AirLive WL-2000CAM with firmware LM.1.6.18 14.10.2011, and AirLive POE-200CAM v2 with firmware LM.1.6.17.01 uses hard-coded credentials in the embedded Boa web server, which allows remote attackers to obtain user credentials via crafted HTTP requests.Show less
1Airlive
3Bu 2015 Firmware
Bu 3026 FirmwareMd 3025 Firmware
May 13, 2026
Jul 25, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
cgi_test.cgi in AirLive BU-2015 with firmware 1.03.18, BU-3026 with firmware 1.43, and MD-3025 with firmware 1.81 allows remote attackers to execute arbitrary OS commands via shell metacharacters after an "&" (ampersand)...Show more
cgi_test.cgi in AirLive BU-2015 with firmware 1.03.18, BU-3026 with firmware 1.43, and MD-3025 with firmware 1.81 allows remote attackers to execute arbitrary OS commands via shell metacharacters after an "&" (ampersand) in the write_mac write_pid, write_msn, write_tan, or write_hdv parameter.Show less