ZeroHour

Vulnerabilities

5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2019-13405
+4 in the same advisory: …11064 …13408 …13406 …13407
A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service.

A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacker can send a POST request to cgibin/AdbSetting.cgi to enable ADB without any authentication then take the compromised device as a relay or to install mining software.

NVD description · AI analysis pending
9.8
group max
3% PoC
  • androvideo vd 1 firmware