CVE-2021-36260: Hikvision IP camera/NVR - Remote Command Execution
HoneyLabs honeypots recorded 844 probes matching CVE-2021-36260 from 7 distinct source IP addresses in the last 7 days. Severity is rated critical.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /SDK/webLanguage
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 195.182.16.23 | 783 | Amarutu Technology Ltd | Germany |
| 89.42.231.200 | 52 | Amarutu Technology Ltd | The Netherlands |
| 49.207.15.17 | 3 | Atria Convergence Technologies Ltd., | India |
| 188.191.165.8 | 3 | Intelsc Ltd. | Russia |
| 84.54.70.18 | 1 | Uzbektelekom Joint Stock Company | Uzbekistan |
| 134.249.29.172 | 1 | Kyivstar PJSC | Ukraine |
| 91.92.47.116 | 1 | TechTies Inc. | The Netherlands |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS206264 | Amarutu Technology Ltd | 835 | 2 |
| AS50577 | Intelsc Ltd. | 3 | 1 |
| AS55577 | Atria Convergence Technologies Ltd., | 3 | 1 |
| AS197170 | TechTies Inc. | 1 | 1 |
| AS15895 | Kyivstar PJSC | 1 | 1 |
| AS8193 | Uzbektelekom Joint Stock Company | 1 | 1 |
Captured requests
- /SDK/webLanguage
HTTP client fingerprints (JA4H)
- ge11nn09en_5f96af7f1814
- po11nn0400_fdcc3615ee04
- ge11nn0400_17292dadbc7b
- pu11nn0600_f8bf768a441b
CVE report
CVE report
Open a specific CVE from the CVE tracker.