By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: CISA Flags Actively Exploited Digiever NVR Vulnerability Allowing Remote Code Execution
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > CISA Flags Actively Exploited Digiever NVR Vulnerability Allowing Remote Code Execution
Tech News

CISA Flags Actively Exploited Digiever NVR Vulnerability Allowing Remote Code Execution

By Viral Trending Content 2 Min Read
Share
SHARE

Dec 25, 2025Ravie LakshmananVulnerability / Endpoint Security

Digiever NVR Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a security flaw impacting Digiever DS-2105 Pro network video recorders (NVRs) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

The vulnerability, tracked as CVE-2023-52163 (CVSS score: 8.8), relates to a case of command injection that allows post-authentication remote code execution.

“Digiever DS-2105 Pro contains a missing authorization vulnerability which could allow for command injection via time_tzsetup.cgi,” CISA said.

Cybersecurity

The addition of CVE-2023-52163 to the KEV catalog comes in the multiple reports from Akamai and Fortinet about the exploitation of the flaw by threat actors to deliver botnets like Mirai and ShadowV2.

According to TXOne Research security researcher Ta-Lun Yen, the vulnerability, alongside an arbitrary file read bug (CVE-2023-52164, CVSS score: 5.1), remains unpatched due to the device reaching end-of-life (EoL) status.

Successful exploitation requires an attacker to be logged into the device and perform a crafted request. In the absence of a patch, it’s advised that users avoid exposing the device to the internet and change the default username and password.

CISA is also recommending that Federal Civilian Executive Branch (FCEB) agencies apply the necessary mitigations or discontinue use of the product by January 12, 2025, to secure their network from active threats.

You Might Also Like

MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & More

Julie Collison wins Tide everywoman Entrepreneur Awards

The Best Vacuum for Pet Hair—We Tested Many to Find Which Ones Work Best (2026)

Luna Ring Gen 2 Review: Stylish and Subscription-Free

NotebookLM Alternative That Uses GPT 5.2, Claude Sonnet 4.5

TAGGED: botnet, Cyber Security, Cybersecurity, endpoint security, Internet, Internet of Things, network security, surveillance, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article New York blanketed in snow, sparking travel chaos
Next Article Bitcoin returns will be strong but 'not spectacular' over next decade: Exec
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & More
Tech News
What Is Bridgit Mendler Doing Now? All About the Former Disney Channel Star’s Life Today
Celebrity
US offered Ukraine 15-year security guarantee, Zelensky says
World News
Coloradans put ALDI at the top of their grocery list. Will their wish come true?
Business
Japan signals a friendlier crypto regime with sweeping tax reform plans
Crypto
“We’re getting very close”: Trump talks peace with Ukraine
World News
Bitcoin Supports The US Dollar’s Reserve Status, Says Coinbase CEO
Crypto

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & More

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
MongoDB Attacks, Wallet Breaches, Android Spyware, Insider Crime & More
December 29, 2025
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?