CISA's list that day

18 December 2024

On CISA added 4 vulnerabilities to its list of exploited vulnerabilities, in NUUO NVRmini Devices, Reolink Multiple IP Cameras, Reolink RLC-410W IP Camera and 1 other product. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2018-14933OS Command InjectionNUUO NVRmini DevicesPatch this weekMetasploit module; EPSS 0.95; verified Exploit-DB entry0.95
CVE-2019-11001OS Command InjectionReolink Multiple IP CamerasPatch soon0.38
CVE-2021-40407OS Command InjectionReolink RLC-410W IP CameraPatch soon0.48
CVE-2022-23227Missing AuthenticationNUUO NVRmini2 DevicesPatch soon0.48

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.