Swann produces surveillance and security appliances including indoor and outdoor cameras and digital video recorders that address residential and small-business monitoring needs. The observed vulnerability profile centers on input-injection weaknesses, hard-coded credentials, and improper handling of sensitive data in logs across its camera and DVR firmware, reflecting common challenges in consumer-grade embedded security products. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Swann over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-7487CRITICAL On Swann DVR04B, DVR08B, DVR-16CIF, and DVR16B devices, raysharpdvr application has a vulnerable call to “system”, which allows remote attackers to execute arbitrary code via TCP p | Mar 21, 2020 | 9.8 | 31 | NO | NO |
CVE-2018-20955CRITICAL Swann SWWHD-INTCAM-HD devices have the twipc root password, leading to FTP access as root. NOTE: all affected customers were migrated by 2020-08-31. | Aug 8, 2019 | 9.8 | 28 | NO | NO |
CVE-2018-20956MEDIUM Swann SWWHD-INTCAM-HD devices leave the PSK in logs after a factory reset. NOTE: all affected customers were migrated by 2020-08-31. | Aug 8, 2019 | 5.5 | 19 | NO | NO |
CVE-2015-8287MEDIUM Swann SRNVW-470LCD devices with firmware through 0114 and SWNVW-470CAM devices with firmware through 1022 allow remote attackers to watch live video by visiting an unspecified URL. | Feb 18, 2016 | 5.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Swann.
Media articles that mention a CVE ID that affects a product developed by Swann — matched by CVE ID, not by vendor name.