Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Reolink

First CVE: Apr 8, 2019Active for: 7 yearsTotal CVEs: 106
63.0
VTI Score
TOP TARGET

Reolink develops a focused line of networked surveillance cameras and recording devices, with vulnerability exposure concentrated in products such as the RLC-410W and related firmware. The vendor's disclosures center on input-validation, access-control, and command-injection weaknesses alongside hard-coded cryptographic material and incorrect default permissions, a pattern characteristic of embedded network devices where firmware update cycles and deployment longevity create sustained risk. The moderate volume of disclosures and top-percentile prominence reflect the broad deployment of these devices across small-business and consumer surveillance installations, where network-facing management interfaces and long product lifecycles amplify the impact of authentication and input-handling flaws. Defenders should inventory Reolink devices, prioritize firmware updates, and restrict management access; live severity, exploitation, and exposure figures are shown alongside this summary.

FAUCET AI Generated
106
Total CVEs
More Total CVEs than 99% of tracked vendors
0.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
1.9%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Reolink over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 8, 2019
7 years ago
Most Recent CVE
Oct 21, 2025
276 days ago

Products(29 total)

Top CVEs

Signals from CVEs in this vendor scope (106 CVEs).

106 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-40407HIGH
An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->doma
Jan 28, 20227.282YESNO
CVE-2019-11001HIGH
On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the "TestEmail" functionality to inject and run OS commands as r
Apr 8, 20197.280YESNO
CVE-2021-40150HIGH
The web server of the E1 Zoom camera through 3.0.0.716 discloses its configuration via the /conf/ directory that is mapped to a publicly accessible path. In this way an attacker ca
Jul 17, 20227.536NOYES
CVE-2021-40412HIGH
An OScommand injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [8] the devname variable, that has the value of
Jan 28, 20227.236NONO
CVE-2021-40410HIGH
An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [4] the dns_data->dns1 variable, that has the
Jan 28, 20227.236NONO
CVE-2025-55619CRITICAL
Reolink v4.54.0.4.20250526 was discovered to contain a hardcoded encryption key and initialization vector. An attacker can leverage this vulnerability to decrypt access tokens and
Aug 22, 20259.834NONO
CVE-2021-40149MEDIUM
The web server of the E1 Zoom camera through 3.0.0.716 discloses its SSL private key via the root web server directory. In this way an attacker can download the entire key via the
Jul 17, 20225.933NOYES
CVE-2025-55637CRITICAL
Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 was discovered to contain a command injection vulnerability via the setddns_pip_system()
Aug 22, 20259.831NONO
CVE-2021-40409CRITICAL
An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->pass
Jan 28, 20229.831NONO
CVE-2021-40408CRITICAL
An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->user
Jan 28, 20229.831NONO
View all 106 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products106 CVEs
14%
81%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (3.8%)
Network102 (96.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low104 (98.1%)
High2 (1.9%)
Unknown0 (0.0%)
User Interaction
None103 (97.2%)
Unknown0 (0.0%)
Required3 (2.8%)
Privileges Required
Low65 (61.3%)
High5 (4.7%)
None36 (34.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (106 CVEs).

CISA KEV
2 CVEs
1.9% of CVEs· 99th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
1.9% of CVEs· 95th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Reolink.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Reolink — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Reolink's Products

View all 3 CNAs →

Top CWEs