Vulnerabilities
6 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2025-63408 | Local Agent DVR versions thru 6.6.1.0 are vulnerable to directory traversal that allows an unauthenticated local attacker to gain access to sensitive informatio Local Agent DVR versions thru 6.6.1.0 are vulnerable to directory traversal that allows an unauthenticated local attacker to gain access to sensitive information, cause a server-side forgery request (SSRF), or execute OS commands. NVD description · AI analysis pending | 7.8 | <1% | PoC |
| — | |
| CVE-2024-22514 +1 in the same advisory: …22515 | An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted backup file. An issue discovered in iSpyConnect.com Agent DVR 5.1.6.0 allows attackers to run arbitrary files by restoring a crafted backup file. NVD description · AI analysis pending | 8.8 | 1% |
| — | ||
| CVE-2022-29775 +1 in the same advisory: …29774 | iSpyConnect iSpy v7.2.2.0 allows attackers to bypass authentication via a crafted URL. iSpyConnect iSpy v7.2.2.0 allows attackers to bypass authentication via a crafted URL. NVD description · AI analysis pending | 9.8 | 60% |
| — | ||
| CVE-2020-13093 | iSpyConnect.com Agent DVR before 2.7.1.0 allows directory traversal. iSpyConnect.com Agent DVR before 2.7.1.0 allows directory traversal. NVD description · AI analysis pending | 5.3 | 1% |
| — |