CVE Tools
Home/Vulnerability/CVE-2025-34054

CVE-2025-34054

AVTECH IP camera, DVR, and NVR Devices Unauthenticated Command Injection

Published: Jul 1, 2025Updated: Nov 20, 2025 Sources: CVE List NVD BDU
10.0CVSS
CRITICAL

An unauthenticated command injection vulnerability exists in AVTECH DVR devices via Search.cgi?action=cgi_query. The use of wget without input sanitization allows attackers to inject shell commands through the username or queryb64str parameters, executing commands as root. Exploitation evidence was observed by the Shadowserver Foundation on 2025-01-04 UTC.

EPSS Score
2.3%
Top 15.0%
CISA KEV
Not in KEV
Exploits
2 Known
Remediation
Patch Available

CVSS Vector Breakdown

AV:NAC:LC:HI:HA:H
Exploitability
AV:NAccess Vector
Network
AC:LAccess Complexity
Low
Impact
C:HConfidentiality
H
I:HIntegrity
H
A:HAvailability
H

Weaknesses

Affected Products

IP camera, DVR, and NVR Devices
AVTECH
DVR
AVTECH SECURITY Corporation

Attack Graph

Products CVE Techniques Tactics

Click technique nodes to view MITRE ATT&CK details. Scroll to zoom, drag to pan.

Exploitability

2 exploit sources identified

Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.

View exploit details
Official Patch Available

MITRE ATT&CK

1 technique
Execution
View detailed technique mapping

References

and 4 more references View all →

Timeline

Published
Jul 1, 2025
Last Updated
Nov 20, 2025
1

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2025-34054 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
AI-powered analysis
Plain-language impact assessment and exploitation scenario
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows