The Recording Server, Management Server and Management Client in Network Video Management System Enterprise Edition use an exploitable .NET Framework Remoting deserialization level. Elevation of Privileges and/or Denial-of-Service are possible if the affected ports are exposed.
N/A
The Recording Server, Management Server and Management Client in Network Video Management System Enterprise Edition use an exploitable .NET Framework Remoting deserialization level. Elevation of Privileges and/or Denial-of-Service are possible if the affected ports are exposed.
List of affected ports:
Hotfixes have been released for versions 2016-R3 through 2017-R2.
It is recommended to install the hotfixes if you use any of the affected Network Video Management System products.
Refer to the article for hotfix 000013322.
This hotfix was cumulatively integrated into hotfix 000013322.
Patch files for this hotfix were cumulatively integrated into the ones for hotfix 000013322.
The hotfix download link is not published. Contact your local dealer for more support.