High severity7.5NVD Advisory· Published Sep 15, 2022· Updated Jun 17, 2026
CVE-2022-3001
CVE-2022-3001
Description
This vulnerability exists in Milesight Video Management Systems (VMS), all firmware versions prior to 40.7.0.79-r1, due to improper input handling at camera’s web-based management interface. A remote attacker could exploit this vulnerability by sending a specially crafted http request on the targeted network camera. Successful exploitation of this vulnerability could allow the attacker to cause a Denial of Service condition on the targeted device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4<40.7.0.79-r1+ 1 more
- (no CPE)range: <40.7.0.79-r1
- (no CPE)range: VMS
cpe:2.3:o:milesight:video_management_systems_firmware:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:milesight:video_management_systems_firmware:*:*:*:*:*:*:*:*range: <40.7.0.79
- cpe:2.3:o:milesight:video_management_systems_firmware:40.7.0.79:-:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.cert-in.org.in/s2cMainServletnvdThird Party Advisory
News mentions
0No linked articles in our index yet.