Zhejiang Uniview Technologies develops a narrow line of surveillance and video-management products, including network cameras and embedded firmware components, that serve as internet-facing endpoints in security infrastructure. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit tooling, clustering around classic memory-safety issues such as buffer overflows alongside authentication and input-validation weaknesses endemic to embedded network devices. Defenders should treat firmware and camera management interfaces as high-priority patching targets; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zhejiang Uniview Technologies Co., Ltd. over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-0778CRITICAL ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in Uniview ISC 2500-S up to 20210930. Affected by this issue is the function setNa | Jan 22, 2024 | 9.8 | 47 | NO | NO |
CVE-2021-45039CRITICAL Multiple models of the Uniview IP Camera (e.g., IPC_G6103 B6103.16.10.B25.201218, IPC_G61, IPC21, IPC23, IPC32, IPC36, IPC62, and IPC_HCMN) offer an undocumented UDP service on por | May 31, 2023 | 9.8 | 30 | NO | NO |
CVE-2024-3850MEDIUM Uniview NVR301-04S2-P4 is vulnerable to reflected cross-site scripting attack (XSS). An attacker could send a user a URL that if clicked on could execute malicious JavaScript in th | Jun 10, 2024 | 5.4 | 26 | NO | YES |
CVE-2018-14923HIGH A vulnerability in uniview EZPlayer 1.0.6 could allow an attacker to execute arbitrary code on a targeted system via video playback. | Aug 3, 2018 | 7.8 | 25 | NO | NO |
CVE-2023-0773CRITICAL The vulnerability exists in Uniview IP Camera due to identification and authentication failure at its web-based management interface. A remote attacker could exploit this vulnerabi | Sep 19, 2023 | 9.8 | 24 | NO | NO |
CVE-2020-21452CRITICAL An issue was discovered in uniview ISC2500-S. This is an upload vulnerability where an attacker can upload malicious code via /Interface/DevManage/EC.php?cmd=upload | Apr 29, 2021 | 9.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zhejiang Uniview Technologies Co., Ltd..
Media articles that mention a CVE ID that affects a product developed by Zhejiang Uniview Technologies Co., Ltd. — matched by CVE ID, not by vendor name.