Ovislink develops a focused line of network cameras and power-over-ethernet devices under its AirLive brand, targeting small-business and surveillance deployments. The vendor's vulnerability exposure centers on a narrow product portfolio and recurs through common web-application and embedded-device weakness classes including cross-site request forgery, path traversal, and uncontrolled resource consumption. Vulnerabilities affecting this vendor tend to acquire public exploit code; current severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ovislink over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-3686HIGH cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote attackers to obtain the administrator password via a list action. | Oct 11, 2013 | 10.0 | 50 | NO | YES |
CVE-2013-3539MEDIUM Cross-site request forgery (CSRF) vulnerability in the command/user.cgi in Sony SNC CH140, SNC CH180, SNC CH240, SNC CH280, SNC DH140, SNC DH140T, SNC DH180, SNC DH240, SNC DH240T, | Oct 1, 2013 | 6.8 | 35 | NO | YES |
CVE-2013-3541HIGH Directory traversal vulnerability in cgi-bin/admin/fileread in AirLive WL2600CAM and possibly other camera models allows remote attackers to read arbitrary files via a .. (dot dot) | Oct 4, 2013 | 7.8 | 33 | NO | YES |
CVE-2013-3540MEDIUM Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other c | Oct 4, 2013 | 6.8 | 32 | NO | YES |
CVE-2013-3691HIGH AirLive POE-2600HD allows remote attackers to cause a denial of service (device reset) via a long URL. | Dec 11, 2019 | 7.5 | 29 | NO | YES |
CVE-2013-3687HIGH AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models use cleartext to store sensitive information, which allows attacke | Oct 11, 2013 | 7.8 | 29 | NO | YES |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ovislink.
Media articles that mention a CVE ID that affects a product developed by Ovislink — matched by CVE ID, not by vendor name.