peter bassill · operator
$ cve CVE-2015-4464 JSON

CVE-2015-4464

9.8
CRITICAL · CVSS 3.0 · EPSS 4.7% (pctl 92)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Kguard Digital Video Recorder 104, 108, v2 does not have any authorization or authentication between an ActiveX client and the application server.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS4.66% — more likely to be exploited than 92% of all CVEs
WeaknessCWE-287
On CISA KEVno
Public exploitnone known
Published2017-08-18
Last modified2026-06-17

Affected (4)

VendorProduct
kguardsecuritykg-sha104
kguardsecuritykg-sha104 firmware
kguardsecuritykg-sha108
kguardsecuritykg-sha108 firmware

References

→ the Explorer  ·  watch your stack  ·  NVD