VYPR
Vendor

Blackmagicdesign

Products
4
CVEs
5
Across products
6
Status
Private

Products

4

Recent CVEs

5
  • CVE-2021-40418CriDec 22, 2021
    risk 0.65cvss 9.8epss 0.18

    When parsing a file that is submitted to the DPDecoder service as a job, the R3D SDK will mistakenly skip over the assignment of a property containing an object referring to a UUID that was parsed from a frame within the video container. Upon destruction of the object that owns…

  • CVE-2021-40417CriDec 22, 2021
    risk 0.65cvss 9.8epss 0.16

    When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that were submitted with the job along with fields that were parsed for the submitted video by the R3D SDK to calculate the size of a heap buffer.…

  • CVE-2025-57441CriSep 22, 2025
    risk 0.64cvss 9.8epss 0.01

    The Blackmagic ATEM Mini Pro 2.7 exposes sensitive device and stream configuration information via an unauthenticated Telnet service on port 9990. Upon connection, the attacker can access a protocol preamble that leaks the video mode, routing configuration, input/output labels,…

  • CVE-2025-57437CriSep 22, 2025
    risk 0.64cvss 9.8epss 0.01

    The Blackmagic Web Presenter HD firmware version 3.3 exposes sensitive information via an unauthenticated Telnet service on port 9977. When connected, the service reveals extensive device configuration data including: - Model, version, and unique identifiers - Network settings…

  • CVE-2025-57432CriSep 22, 2025
    risk 0.64cvss 9.8epss 0.01

    Blackmagic Web Presenter version 3.3 exposes a Telnet service on port 9977 that accepts unauthenticated commands. This service allows remote attackers to manipulate stream settings, including changing video modes and possibly altering device functionality. No credentials or…