Annigroup develops a line of 5-in-1 XVR (hybrid video recorder) products and firmware for surveillance and video management, a modestly represented segment within the vulnerability landscape. The observed disclosures center on exposure of sensitive information to unauthorized actors, a class relevant to devices handling authentication, configuration, and recorded video data. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Annigroup over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-10770CRITICAL download.rsp on ShenZhen Anni "5 in 1 XVR" devices allows remote attackers to download the configuration (without a login) to discover the password. | May 9, 2018 | 9.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Annigroup.
Media articles that mention a CVE ID that affects a product developed by Annigroup — matched by CVE ID, not by vendor name.