CVE-2020-15956

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
04/08/2020
Last modified:
06/08/2020

Description

ActiveMediaServer.exe in ACTi NVR3 Standard Server 3.0.12.42 allows remote unauthenticated attackers to trigger a buffer overflow and application termination via a malformed payload.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:acti:nvr:2.3.04.07:*:*:*:professional:*:*:*
cpe:2.3:a:acti:nvr:3.0.12.42:*:*:*:standard:*:*:*