← KEV catalog
CISA known exploited vulnerability

CVE-2021-40407

Reolink RLC-410W IP Camera OS Command Injection Vulnerability

SOURCE FACT

Reolink · RLC-410W IP Camera

Reolink RLC-410W IP cameras contain an authenticated OS command injection vulnerability in the device network settings functionality.

Required action

The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization if a current mitigation is unavailable.

CISA notes

https://reolink.com/product-eol/ ; https://reolink.com/download-center/ ; https://nvd.nist.gov/vuln/detail/CVE-2021-40407

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?