ZeroHour

Vulnerabilities

6 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2018-12323
An issue was discovered on Momentum Axel 720P 5.1.8 devices.

An issue was discovered on Momentum Axel 720P 5.1.8 devices. A password of EHLGVG is hard-coded for the root and admin accounts, which makes it easier for physically proximate attackers to login at the console.

NVD description · AI analysis pending
6.8<1% PoC
  • apollotechnologiesinc momentum axel 720p
  • apollotechnologiesinc momentum axel 720p firmware
CVE-2018-12258
+4 in the same advisory: …12259 …12260 …12257 …12261
An issue was discovered on Momentum Axel 720P 5.1.8 devices.

An issue was discovered on Momentum Axel 720P 5.1.8 devices. Custom Firmware Upgrade is possible via an SD Card. With physical access, an attacker can upgrade the firmware in under 60 seconds by inserting an SD card containing the firmware with name 'ezviz.dav' and rebooting.

NVD description · AI analysis pending
6.8
group max
<1% PoC
  • apollotechnologiesinc momentum axel 720p firmware