Discover the denial of service vulnerability in the JSON command parser of Reolink RLC-410W v3.0.0.136_20121102. Learn about the impact, affected systems, exploitation mechanism, and mitigation steps.
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of Reolink RLC-410W v3.0.0.136_20121102, allowing an attacker to trigger a reboot through a specially-crafted HTTP request.
Understanding CVE-2021-44407
This CVE describes a vulnerability in the JSON command parser of a specific Reolink camera model that can be exploited to cause a denial of service.
What is CVE-2021-44407?
The vulnerability in the cgiserver.cgi JSON command parser of the Reolink RLC-410W v3.0.0.136_20121102 camera allows for a denial of service by triggering a reboot through a specially-crafted HTTP request.
The Impact of CVE-2021-44407
The impact of this vulnerability is rated as High according to the CVSS v3.0 base score of 8.6 due to its potential for causing system unavailability.
Technical Details of CVE-2021-44407
This section provides technical details of the vulnerability.
Vulnerability Description
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of Reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot.
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Steps to address and prevent exploitation of the vulnerability.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates