Check Point Reference: | CPAI-2020-1195 |
Date Published: | 23 Nov 2020 |
Severity: | High |
Last Updated: | Thursday 17 July, 2025 |
Source: | |
Industry Reference: | CVE-2020-5735 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Amcrest 1080-lite 8ch firmware Amcrest AMDV10814-H5 firmware Amcrest IPM-721 firmware prior to v2.420.ac00.18.r.20200217 Amcrest IP2M-841 firmware prior to v2.420.ac00.18.r.20200217 Amcrest IP2M-841-V3 firmware prior to v2.800.0000000.6.r.200314 Amcrest IP2M-853EW firmware prior to v2.623.00ac004.0.r.200316 Amcrest IP2M-858W firmware prior to v2.623.00ac004.0.r.200316 Amcrest IP2M-866W firmware prior to v2.623.00ac004.0.r.200316 Amcrest IP2M-866EW firmware prior to v2.623.00ac004.0.r.200316 Amcrest IP4M-1053EW firmware prior to v2.623.00ac004.0.r.200316 Amcrest IP8M-2454EW firmware prior to v2.622.00ac000.0.r.200320 Amcrest IP8M-2493EB firmware prior to v2.622.00ac000.0.r.200320 Amcrest IP8M-2496EB firmware prior to v2.622.00ac000.0.r.200320 Amcrest IP8M-2597E firmware prior to v2.800.00ac000.0.r.200330 Amcrest IP8M-MB2546EW firmware prior to v2.622.00ac000.0.r.200320 Amcrest IP8M-MT2544EW firmware prior to v2.622.00ac000.0.r.200320 Amcrest IP8M-T2499EW firmware prior to v2.622.00ac000.0.r.200320 Amcrest IPM-HX1 firmware prior to v2.420.ac00.18.r.20200217 |
Vulnerability Description | A buffer overflow vulnerability exists in multiple Amcrest products. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the affected system or cause application crashes. |
This protection detects attempts to exploit this vulnerability.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.
This protection's log will contain the following information:
Attack Name: Application Servers Protection Violation.
Attack Information: Amcrest Multiple Products Buffer Overflow (CVE-2020-5735)