GeutebrueckCVEs & Vulnerabilities

27 CVEs affecting Geutebrueck products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

g-cam ethc-2239 firmware 42g-cam ethc-2240 firmware 42g-cam efd-2250 firmware 42g-cam ebc-2110 firmware 42g-cam ethc-2230 firmware 42g-cam efd-2241 firmware 42g-cam ebc-2111 firmware 42g-cam ethc-2249 firmware 42
CVE-2021-33544KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33548KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33549KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the action parameter, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33550KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33551KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33552KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33553KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33554KEVHIGHin the wild

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may allow an attacker to remotely execute arbitrary code.

11 Apr 2026
7.2
CVSS
CVE-2021-33547HIGH

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the profile parameter which may allow an attacker to remotely execute arbitrary code.

13 Sep 2021
7.2
CVSS
CVE-2021-33546HIGH

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the name parameter, which may allow an attacker to remotely execute arbitrary code.

13 Sep 2021
7.2
CVSS
CVE-2021-33545HIGH

Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the counter parameter which may allow an attacker to remotely execute arbitrary code.

13 Sep 2021
7.2
CVSS
CVE-2021-33543CRITICAL

Multiple camera devices by UDP Technology, Geutebrück and other vendors allow unauthenticated remote access to sensitive files due to default user authentication settings. This can lead to manipulation of the device and denial of service.

13 Sep 2021
9.8
CVSS
CVE-2020-16205HIGH

Using a specially crafted URL command, a remote authenticated user can execute commands as root on the G-Cam and G-Code (Firmware Versions 1.12.0.25 and prior as well as the limited Versions 1.12.13.2 and 1.12.14.5).

14 Aug 2020
7.2
CVSS
CVE-2019-10958HIGH

Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated attacker with access to network configuration to supply system commands to the server, leading to remote code execution as root.

17 Jan 2020
7.2
CVSS
CVE-2019-10957MEDIUM

Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated attacker with access to event configuration to store malicious code on the server, which could later be triggered by a legitimate user resulting in code execution within the user’s browser.

17 Jan 2020
4.8
CVSS
CVE-2019-10956HIGH

Geutebruck IP Cameras G-Code(EEC-2xxx), G-Cam(EBC-21xx/EFD-22xx/ETHC-22xx/EWPC-22xx): All versions 1.12.0.25 and prior may allow a remote authenticated user, using a specially crafted URL command, to execute commands as root.

17 Jan 2020
7.2
CVSS
CVE-2018-19007CRITICAL

In Geutebrueck GmbH E2 Camera Series versions prior to 1.12.0.25 the DDNS configuration (in the Network Configuration panel) is vulnerable to an OS system command injection as root.

14 Dec 2018
9.8
CVSS
CVE-2018-15534CRITICALpoc

Geutebrueck re_porter 16 before 7.8.974.20 has a possibility of unauthenticated access to sensitive information including usernames and hashes via a direct request for /statistics/gscsetup.xml on TCP port 12003.

21 Aug 2018
9.8
CVSS
CVE-2018-15533MEDIUMpoc

A reflected cross-site scripting vulnerability exists in Geutebrueck re_porter 16 before 7.8.974.20 by appending a query string to /modifychannel/exec or /images/*.png on TCP port 12005.

21 Aug 2018
6.1
CVSS
CVE-2018-7532CRITICAL

Unauthentication vulnerabilities have been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow remote code execution.

22 Mar 2018
9.8
CVSS
CVE-2018-7528CRITICAL

An SQL injection vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow an attacker to alter stored data.

22 Mar 2018
9.1
CVSS
CVE-2018-7524HIGH

A cross-site request forgery vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow an unauthorized user to be added to the system.

22 Mar 2018
8.8
CVSS
CVE-2018-7520CRITICAL

An improper access control vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which could allow a full configuration download, including passwords.

22 Mar 2018
9.8
CVSS
CVE-2018-7516HIGH

A server-side request forgery vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which could lead to proxied network scans.

22 Mar 2018
7.3
CVSS
CVE-2018-7512MEDIUM

A cross-site scripting vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP cameras, which may allow remote code execution.

22 Mar 2018
6.1
CVSS
CVE-2017-11517CRITICALpoc

Stack-based buffer overflow in GCoreServer.exe in the server in Geutebrueck Gcore 1.3.8.42 and 1.4.2.37 allows remote attackers to execute arbitrary code via a long URI in a GET request.

21 Jul 2017
9.8
CVSS
CVE-2017-5173CRITICALpoc

An Improper Neutralization of Special Elements (in an OS command) issue was discovered in Geutebruck IP Camera G-Cam/EFD-2250 Version 1.11.0.12. An improper neutralization of special elements vulnerability has been identified. If special elements are not properly neutralized, an attacker can call multiple parameters that can allow access to the root level operating system which could allow remote code execution.

19 May 2017
9.8
CVSS
← PrevPage 1 / 1Next →