Merit LILIN AH55B04 & AH55B08 DVR firm has hard-coded administrator credentials. An unauthenticated remote attacker can use these credentials to log in administrator page, to manipulate system or disrupt service.

Project Subscriptions

Vendors Products
Meritlilin Subscribe
Ah55b04 Subscribe
Ah55b04 Firmware Subscribe
Ah55b08 Subscribe
Ah55b08 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-50378 Merit LILIN AH55B04 & AH55B08 DVR firm has hard-coded administrator credentials. An unauthenticated remote attacker can use these credentials to log in administrator page, to manipulate system or disrupt service.
Fixes

Solution

Update Merit LILIN AH55B04 & AH55B08 DVR version to SVN#8044


Workaround

No workaround given by the vendor.

History

Thu, 10 Apr 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2025-04-10T15:48:50.318Z

Reserved: 2022-12-20T00:00:00.000Z

Link: CVE-2022-47618

cve-icon Vulnrichment

Updated: 2024-08-03T15:02:36.410Z

cve-icon NVD

Status : Modified

Published: 2023-01-03T03:15:10.910

Modified: 2024-11-21T07:32:16.657

Link: CVE-2022-47618

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses