Dw maintains a narrow portfolio of imaging and server products—MegaPix and Spectrum Server with associated firmware—that, despite limited volume, occupy a niche in specialized deployment contexts. The vendor's vulnerability profile centers on application and authentication layer weaknesses including OS command injection, cross-site scripting, session fixation, and improper authentication, patterns typical of web-exposed appliances where input handling and session management are critical. Public exploit code has a notable association with this vendor's disclosures; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dw over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-34534HIGH Digital Watchdog DW Spectrum Server 4.2.0.32842 allows attackers to access sensitive infromation via a crafted API call. | Jul 19, 2022 | 7.5 | 34 | NO | YES |
CVE-2022-34538HIGH Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vca/bia/addacph.cgi. This vulnerability i | Jul 19, 2022 | 8.8 | 29 | NO | NO |
CVE-2022-34540HIGH Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vca/license/license_tok.cgi. This vulnera | Jul 19, 2022 | 8.8 | 27 | NO | NO |
CVE-2022-34539HIGH Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/curltest.cgi. This vulnerability is explo | Jul 19, 2022 | 8.8 | 27 | NO | NO |
CVE-2022-34536HIGH Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows attackers to access the core log file and perform session hijacking via a crafted session token. | Jul 19, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-34535HIGH Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 allows unauthenticated attackers to view internal paths and scripts via web files. | Jul 19, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-34537MEDIUM Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a cross-site scripting (XSS) vulnerability via the component bia_oneshot.cgi. | Jul 19, 2022 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dw.
Media articles that mention a CVE ID that affects a product developed by Dw — matched by CVE ID, not by vendor name.