Vulnerability detail
Enriched intelligence for a single CVE
Critical
CVE-2018-9995
PUBLISHEDTBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR Login, which...
- Vendor
- TBK
- Product
- DVR4104, DVR4216
- Published
- Apr 10, 2018
- EPSS
- —
Description
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR Login, and MDVR Login, which run re-branded versions of the original TBK DVR4104 and DVR4216 series, allow remote attackers to bypass authentication via a "Cookie: uid=admin" header, as demonstrated by a device.rsp?opt=user&cmd=list request that provides credentials within JSON data in a response.
CVSS scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AV:N/AC:L/Au:N/C:P/I:N/A:N
References
- https://www.bleepingcomputer.com/news/security/new-hacking-tool-lets-users-access-a-bunch-of-dvrs-and-their-video-feeds/
- https://www.exploit-db.com/exploits/44577/
- http://misteralfa-hack.blogspot.cl/2018/04/tbk-vision-dvr-login-bypass.html
- http://misteralfa-hack.blogspot.cl/2018/04/update-dvr-login-bypass-cve-2018-9995.html
Known exploited vulnerability sources
Catalogues that list this CVE as a known exploited vulnerability.
| Source | Added |
|---|---|
| The Shadowserver (via CIRCL) | Apr 28, 2025 |
Scanner integrations
| Scanner | Reference | Detected |
|---|---|---|
| Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2018/CVE-2018-9995.yaml | Apr 25, 2025 |
Potential proof of concepts
These PoCs are unverified and could contain malware. Use at your own risk.
github · Created 2024-05-09 09:03:42 UTC · 0 stars
github · Created 2024-02-09 12:16:26 UTC · 0 stars
github · Created 2023-09-24 17:00:37 UTC · 4 stars
CVE-2018-9995 Exploit Tool for Python3
github · Created 2023-08-18 19:42:17 UTC · 7 stars
A PoC exploit for CVE-2018-9995 - DVR Authentication Bypass
github · Created 2022-02-18 03:17:31 UTC · 0 stars
github · Created 2021-06-07 05:57:43 UTC · 4 stars
github · Created 2021-03-30 14:27:54 UTC · 1 stars
CVE-2018-9995 هک دوربین مداربسته با آسیب پذیری
github · Created 2019-09-05 14:45:16 UTC · 0 stars
webcam bug (python)
github · Created 2019-06-16 11:18:00 UTC · 1 stars
github · Created 2019-05-28 01:05:16 UTC · 0 stars
github · Created 2019-04-20 08:28:47 UTC · 0 stars
github · Created 2019-01-28 00:16:48 UTC · 1 stars
DVR username password recovery.
github · Created 2018-05-11 07:05:37 UTC · 2 stars
github · Created 2018-05-08 12:07:26 UTC · 4 stars
CVE-2018-9995_Batch_scanning_exp
github · Created 2018-04-29 20:00:06 UTC · 536 stars
(CVE-2018-9995) Get DVR Credentials
Timeline
-
CVE ID Reserved
-
CVE Published to Public
-
Proof of Concept Exploit Available
-
Detected by Nuclei
-
Added to KEVIntel