CVE-2020-5735
Amcrest · exploited in the wild
- Published
- 8 April 2020
- Last modified
- 17 June 2026
- CVSS
- 8.8 v3.1
- Severity
- high
- EPSS
- 36.2% (98th pct)
- CISA KEV
- Added 3 November 2021 KEV
- NVD status
- Analyzed
- Weaknesses
- CWE-121, CWE-787
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenticated remote attacker can abuse this issue to crash the device and possibly execute arbitrary code.
Exploitation
Added to the CISA Known Exploited Vulnerabilities catalogue on 3 November 2021, with a remediation due date of 3 May 2022 for US federal civilian agencies. CISA records no known ransomware campaign use.
Required action as published by CISA: Apply updates per vendor instructions.
Affected products
| Product | Vendor | Type | Versions named |
|---|---|---|---|
| 1080-LITE 8CH | Amcrest | unknown | — |
| AMDV10814-H5 | Amcrest | unknown | — |
| IP2M-841 | Amcrest | unknown | < v2.420.ac00.18.r.20200217 |
| IP2M-841-V3 | Amcrest | unknown | < v2.800.0000000.6.r.200314 |
| IP2M-853EW | Amcrest | unknown | < v2.623.00ac004.0.r.200316 |
| IP2M-858W | Amcrest | unknown | < v2.623.00ac004.0.r.200316 |
| IP2M-866EW | Amcrest | unknown | < v2.623.00ac004.0.r.200316 |
| IP2M-866W | Amcrest | unknown | < v2.623.00ac004.0.r.200316 |
| IP4M-1053EW | Amcrest | unknown | < v2.623.00ac004.0.r.200316 |
| IP8M-2454EW | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IP8M-2493EB | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IP8M-2496EB | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IP8M-2597E | Amcrest | unknown | < v2.800.00ac000.0.r.200330 |
| IP8M-MB2546EW | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IP8M-MT2544EW | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IP8M-T2499EW | Amcrest | unknown | < v2.622.00ac000.0.r.200320 |
| IPM-721 | Amcrest | unknown | < v2.420.ac00.18.r.20200217 |
| Ipm-hx1 | Amcrest | unknown | < v2.420.ac00.18.r.20200217 |
References
- http://packetstormsecurity.com/files/157164/Amcrest-Dahua-NVR-Camera-IP2M-841-Denial-Of-Service.html exploit
- https://www.tenable.com/security/research/tra-2020-20 third-party
- http://packetstormsecurity.com/files/157164/Amcrest-Dahua-NVR-Camera-IP2M-841-Denial-Of-Service.html exploit
- https://www.tenable.com/security/research/tra-2020-20 third-party
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-5735 government
Record assembled from NVD, CISA KEV 2026.09.04 and FIRST EPSS 2026-09-04. Affected products are those NVD's CPE configuration names that fall inside this site's scope; a CVE may affect products outside it.