Critical severity9.8NVD Advisory· Published Feb 6, 2020· Updated Jun 17, 2026
CVE-2015-2909
CVE-2015-2909
Description
Dedicated Micros DV-IP Express, SD Advanced, SD, EcoSense, and DS2 devices rely on a GUI warning to help ensure that the administrator configures login credentials, which makes it easier for remote attackers to obtain access by leveraging situations in which this warning was not heeded. NOTE: the vendor states "The user is presented with clear warnings on the GUI that they should set usernames and passwords."
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
24- Range: unknown
- cpe:2.3:o:netvu:ds2_\(m2ip\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:dv-ip_express_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd-advanced_-_sdhd_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd-advanced_8\/12\/16_vga_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_advanced_closed_iptv_\(m3u\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_advanced_non_closed_iptv_\(m3u\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_advanced_nvr_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_32_\(m3g\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_32_\(m3h\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_4_\(m3s\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_4_\(m3t\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_8\/12\/16_no_kbd_\(m3r\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_8\/12\/16_no_kbd_\(m3s\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_8\/16_front_panel_kbd_\(m3r\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:sd_8\/16_front_panel_kbd_\(m3u\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:ecosense_4\/8\/16_\(m4t\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:ds2_\(dvtr\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:ds2_\(dvtu\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:ds2_\(dvtx\)_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:netvu:ds2_\(dvtx\)_netvu_connected_firmware:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- cybergibbons.com/security-2/shodan-searches/interesting-shodan-searches-sd-advanced-dvrs/nvdExploitThird Party Advisory
- www.kb.cert.org/vuls/id/276148nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.