CVE-2020-5735
Summary
| CVE | CVE-2020-5735 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-08 13:15:00 UTC |
| Updated | 2020-04-09 19:52:00 UTC |
| Description | Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenticated remote attacker can abuse this issue to crash the device and possibly execute arbitrary code. |
Risk And Classification
EPSS: 0.613690000 probability, percentile 0.983100000 (date 2026-04-02)
CISA KEV: Listed on 2021-11-03; due 2022-05-03; ransomware use Unknown
Problem Types: CWE-787
CISA Known Exploited Vulnerability
| Vendor | Amcrest |
|---|---|
| Product | Cameras and Network Video Recorder (NVR) |
| Name | Amcrest Cameras and NVR Stack-based Buffer Overflow Vulnerability |
| Required Action | Apply updates per vendor instructions. |
| Notes | https://nvd.nist.gov/vuln/detail/CVE-2020-5735 |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Amcrest | 1080-lite 8ch | - | All | All | All |
| Hardware | Amcrest | 1080-lite 8ch | - | All | All | All |
| Operating System | Amcrest | 1080-lite 8ch Firmware | - | All | All | All |
| Operating System | Amcrest | 1080-lite 8ch Firmware | - | All | All | All |
| Hardware | Amcrest | Amdv10814-h5 | - | All | All | All |
| Hardware | Amcrest | Amdv10814-h5 | - | All | All | All |
| Operating System | Amcrest | Amdv10814-h5 Firmware | - | All | All | All |
| Operating System | Amcrest | Amdv10814-h5 Firmware | - | All | All | All |
| Hardware | Amcrest | Ip2m-841 | - | All | All | All |
| Hardware | Amcrest | Ip2m-841 | - | All | All | All |
| Hardware | Amcrest | Ip2m-841-v3 | - | All | All | All |
| Hardware | Amcrest | Ip2m-841-v3 | - | All | All | All |
| Operating System | Amcrest | Ip2m-841-v3 Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-841-v3 Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-841 Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-841 Firmware | All | All | All | All |
| Hardware | Amcrest | Ip2m-853ew | - | All | All | All |
| Hardware | Amcrest | Ip2m-853ew | - | All | All | All |
| Operating System | Amcrest | Ip2m-853ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-853ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip2m-858w | - | All | All | All |
| Hardware | Amcrest | Ip2m-858w | - | All | All | All |
| Operating System | Amcrest | Ip2m-858w Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-858w Firmware | All | All | All | All |
| Hardware | Amcrest | Ip2m-866ew | - | All | All | All |
| Hardware | Amcrest | Ip2m-866ew | - | All | All | All |
| Operating System | Amcrest | Ip2m-866ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-866ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip2m-866w | - | All | All | All |
| Hardware | Amcrest | Ip2m-866w | - | All | All | All |
| Operating System | Amcrest | Ip2m-866w Firmware | All | All | All | All |
| Operating System | Amcrest | Ip2m-866w Firmware | All | All | All | All |
| Hardware | Amcrest | Ip4m-1053ew | - | All | All | All |
| Hardware | Amcrest | Ip4m-1053ew | - | All | All | All |
| Operating System | Amcrest | Ip4m-1053ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip4m-1053ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-2454ew | - | All | All | All |
| Hardware | Amcrest | Ip8m-2454ew | - | All | All | All |
| Operating System | Amcrest | Ip8m-2454ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-2454ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-2493eb | - | All | All | All |
| Hardware | Amcrest | Ip8m-2493eb | - | All | All | All |
| Operating System | Amcrest | Ip8m-2493eb Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-2493eb Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-2496eb | - | All | All | All |
| Hardware | Amcrest | Ip8m-2496eb | - | All | All | All |
| Operating System | Amcrest | Ip8m-2496eb Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-2496eb Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-2597e | - | All | All | All |
| Hardware | Amcrest | Ip8m-2597e | - | All | All | All |
| Operating System | Amcrest | Ip8m-2597e Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-2597e Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-mb2546ew | - | All | All | All |
| Hardware | Amcrest | Ip8m-mb2546ew | - | All | All | All |
| Operating System | Amcrest | Ip8m-mb2546ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-mb2546ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-mt2544ew | - | All | All | All |
| Hardware | Amcrest | Ip8m-mt2544ew | - | All | All | All |
| Operating System | Amcrest | Ip8m-mt2544ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-mt2544ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ip8m-t2499ew | - | All | All | All |
| Hardware | Amcrest | Ip8m-t2499ew | - | All | All | All |
| Operating System | Amcrest | Ip8m-t2499ew Firmware | All | All | All | All |
| Operating System | Amcrest | Ip8m-t2499ew Firmware | All | All | All | All |
| Hardware | Amcrest | Ipm-721 | - | All | All | All |
| Hardware | Amcrest | Ipm-721 | - | All | All | All |
| Operating System | Amcrest | Ipm-721 Firmware | All | All | All | All |
| Operating System | Amcrest | Ipm-721 Firmware | All | All | All | All |
| Hardware | Amcrest | Ipm-hx1 | - | All | All | All |
| Hardware | Amcrest | Ipm-hx1 | - | All | All | All |
| Operating System | Amcrest | Ipm-hx1 Firmware | All | All | All | All |
| Operating System | Amcrest | Ipm-hx1 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Amcrest Camera/NVR Multiple Vulnerabilities - Research Advisory | Tenable® | MISC | www.tenable.com | Third Party Advisory |
| Amcrest Dahua NVR Camera IP2M-841 Denial Of Service ≈ Packet Storm | MISC | packetstormsecurity.com | Exploit, Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.