PatchSiren

Reolink CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

Known exploited Reolink CVE published 2024-12-18

CVE-2021-40407

CVE-2021-40407 affects the Reolink RLC-410W IP Camera and is described as an OS command injection vulnerability. CISA added it to the Known Exploited Vulnerabilities catalog on 2024-12-18, which means the issue is considered actively exploited in the wild by the authority that maintains the KEV list. CISA’s note also warns that the impacted product may be end-of-life or end-of-service, and recommends disc [truncated]

Known exploited Reolink CVE published 2024-12-18

CVE-2019-11001

CVE-2019-11001 is a Reolink Multiple IP Cameras OS command injection vulnerability that CISA added to its Known Exploited Vulnerabilities catalog. Based on the supplied sources, public detail is limited, but the KEV listing means defenders should treat this as a high-priority issue and verify whether any deployed Reolink cameras are affected. CISA also notes the impacted product could be end-of-life or en [truncated]