CVE-2024-3721

Published Apr 13, 2024

Last updated 7 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2024-3721 is a command injection vulnerability affecting TBK DVR-4104 and DVR-4216 devices up to version 20240412. The vulnerability exists in the processing of the `/device.rsp` file, where manipulation of the `mdb/mdc` argument allows for remote attackers to execute arbitrary operating system commands. The vulnerability is triggered by constructing an OS command using externally influenced input without proper neutralization of special elements. An attacker can exploit this vulnerability remotely, meaning they don't need physical access to the device.

Description
A vulnerability was found in TBK DVR-4104 and DVR-4216 up to 20240412 and classified as critical. This issue affects some unknown processing of the file /device.rsp?opt=sys&cmd=___S_O_S_T_R_E_A_MAX___. The manipulation of the argument mdb/mdc leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-260573 was assigned to this vulnerability.
Source
cna@vuldb.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
6.3
Impact score
3.4
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Severity
MEDIUM

CVSS 2.0

Type
Secondary
Base score
6.5
Impact score
6.4
Exploitability score
8
Vector string
AV:N/AC:L/Au:S/C:P/I:P/A:P

Weaknesses

cna@vuldb.com
CWE-78

Social media

Hype score
Not currently trending
  1. Mirai Botnet Targets Digital Video Recorders in Russia A Mirai-based botnet is massively attacking digital video recorders in different countries using the known vulnerability CVE-2024-3721. Most of the incidents occurred in Russia, China, Egypt, India, Brazil and Turkey.

    @Aizendcom

    16 Jun 2025

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. #threatreport #LowCompleteness Analysis of the last wave of Mirai Botnet attacks on TBK DVR devices with a vulnerability CVE-2024-3721 | 10-06-2025 Source: https://t.co/eObsBT0M9K Key details below ↓ 💀Threats: Mirai, Bashlite, 🏭Industry: Iot 🌐Geo: Egypt, Ukraine, Ru

    @rst_cloud

    11 Jun 2025

    82 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 📌 Mirai-based botnet targets DVRs globally via CVE-2024-3721. Over 50,000 devices at risk. #CyberSecurity #Botnet https://t.co/fXGPOTzAWP https://t.co/atReutqhB9

    @CyberHub_blog

    10 Jun 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. #securelist@kaspersky Новая ботнет-кампания Mirai по захвату DVR-устройств Эксперты GReAT "Лаборатории Касперского" рассказали о новых возможностях ботнета Mirai: в послед

    @kmscom3

    10 Jun 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 Breaking: The notorious Mirai botnet resurfaces, now targeting vulnerable TBK DVRs by exploiting CVE-2024-3721! This new threat highlights the ever-evolving landscape of #CyberSecurity risks. Stay informed & protect your networks from potential #malware exploits.

    @WideWatchers

    10 Jun 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. A new Mirai botnet is targeting TBK DVRs by exploiting CVE-2024-3721. https://t.co/O6vBn32ywd

    @BlockesN95299

    10 Jun 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. New Mirai botnet targets TBK DVRs by exploiting CVE-2024-3721 https://t.co/KVqGo8trDw #microsoftsecurity #secqube

    @SecQube

    10 Jun 2025

    32 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. New #Mirai #botnet targets #TBK #DVRs by #exploiting CVE-2024-3721 https://t.co/Nxgtp90l7P https://t.co/iLhmImLa2Z

    @omvapt

    10 Jun 2025

    51 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  9. New Mirai botnet infect TBK DVR devices via command injection flaw New variant of Mirai botnet is actively exploiting CVE-2024-3721, a command injection flaw in TBK DVR-4104 and DVR-4216 devices, using a public PoC by researcher "netsecfish." The attack involves sending crafted

    @dCypherIO

    9 Jun 2025

    58 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. A new Mirai malware variant exploits the CVE-2024-3721 command injection flaw in TBK DVRs, enabling hijacking for DDoS attacks and malicious traffic proxying, with significant infections detected predominantly in China, India, and other nations. #Security https://t.co/3exdq5V8OG

    @Strivehawk

    9 Jun 2025

    57 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. ‼️ طريق استغلال ثغرة CVE-2024-3721! باحثين من شركة Kaspersky اكتشفوا نسخة جديدة من شبكة Mirai botnet المشهورة، واللي بقت دلوقتي بتستهدف أجهزة تسجيل الفيديو الرقمي TBK DVR-41

    @hiddenlockT

    9 Jun 2025

    162 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. We've observed yet another variant of the Mirai botnet targeting DVR (digital video recorder) devices. It uses CVE-2024-3721 to deploy a bot on the devices. More here 👉 https://t.co/RfGZRjy5Cv https://t.co/dQQutDSfFN

    @e_kaspersky

    9 Jun 2025

    1161 Impressions

    1 Retweet

    7 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. Exploitation of CVE-2024-3721 in its Linux honeypots from a new Mirai botnet variant using netsecfish's PoC #cyber #CyberSecurity #cybercrime #CyberAttack #cyberdefense https://t.co/xOdmdOxlTV

    @docangelmtz1

    9 Jun 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. New Mirai botnet targets TBK DVRs by exploiting CVE-2024-3721 https://t.co/wqAJ0pcY9l

    @Dinosn

    9 Jun 2025

    2541 Impressions

    8 Retweets

    23 Likes

    7 Bookmarks

    0 Replies

    0 Quotes

  15. Neue Mirai-Welle attackiert TBK-DVRs: Botnetz nutzt CVE-2024-3721 zur Infektion verwundbarer Überwachungssysteme https://t.co/VgvmsD5wFf

    @KolaricDav5471

    9 Jun 2025

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. The Mirai botnet is now exploiting CVE-2024-3721 in TBK DVRs, seizing control of devices for DDoS attacks. Thousands remain vulnerable. #MiraiBotnet #DDoSAttack #IoTsecurity #Cybersecurity #DVRVulnerability https://t.co/MM54mkZ8Bq

    @the_yellow_fall

    9 Jun 2025

    352 Impressions

    2 Retweets

    4 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  17. Variante Mirai sfrutta CVE-2024-3721 per infettare DVR TBK con comandi remoti Botnet, ARM32, DVR, exploit, IoT, malware, mirai, videosorveglianza IP, vulnerabilità https://t.co/L8zNWGaRUq https://t.co/9wp5iQ85mI

    @matricedigitale

    9 Jun 2025

    45 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  18. 【MiraiボットネットがCVE-2024-3721で感染拡大】PoC公開済みのコマンドインジェクションの脆弱性を利用してTBK製DVR-4104およびDVR-4216をボットネットに追加。Kasperskyのスキャンによると約5万台のデバイスがインタ

    @MachinaRecord

    9 Jun 2025

    70 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  19. 🚨Alert🚨CVE-2024-3721: A new Mirai botnet variant is exploiting CVE-2024-3721 to infect vulnerable DVRs. 🧐Deep Dive :https://t.co/GEmI0dV8HN 📊97K+Services are found on the https://t.co/ysWb28Crld yearly. 🔗Hunter Link:https://t.co/udH0kUsuBU 👇Query HUNTER : https:

    @HunterMapping

    9 Jun 2025

    4551 Impressions

    27 Retweets

    80 Likes

    38 Bookmarks

    0 Replies

    1 Quote

  20. 🚨Alert🚨CVE-2024-3721: A new Mirai botnet variant is exploiting CVE-2024-3721 to infect vulnerable DVRs. 🧐Deep Dive :https://t.co/GEmI0dV8HN 📊97K+Services are found on the https://t.co/ysWb28Crld yearly. 🔗Hunter Link:https://t.co/udH0kUsuBU 👇Query HUNTER : https:

    @HunterMapping

    9 Jun 2025

    327 Impressions

    1 Retweet

    8 Likes

    5 Bookmarks

    0 Replies

    0 Quotes

  21. 新型Miraiボットネット、コマンドインジェクション脆弱性を利用してTBK DVRデバイスに感染(CVE-2024-3721) https://t.co/y8byxBy65a #Security #セキュリティ #ニュース

    @SecureShield_

    9 Jun 2025

    48 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. 🚨 New Mirai Botnet Exploits TBK DVR Command Injection Flaw - A new Mirai botnet variant is actively exploiting CVE-2024-3721, a command injection vulnerability in TBK DVR-4104 and DVR-4216 devices. - The flaw allows attackers to execute shell commands via a crafted POST h

    @Ransom_DB

    8 Jun 2025

    249 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. 🚨New Mirai botnet variant exploits CVE-2024-3721 in TBK DVRs. Fast ARM32 attacks, RC4 encryption, anti-VM, and no recon. Over 50K devices exposed! No persistence, but reinfections are fast. #Mirai #Darkweb #Deepweb Breaking news from the world & Darkweb: https://t.co/ZF7G3

    @godeepweb

    8 Jun 2025

    83 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  24. A new Mirai variant exploits CVE-2024-3721 to infect TBK DVRs via command injection, enabling DDoS attacks & malicious traffic. Around 50,000 devices remain vulnerable worldwide, impacting several countries. 🚨 #Mirai #CVE-2024-3721 #Japan https://t.co/ZJp98xfLwq

    @TweetThreatNews

    8 Jun 2025

    195 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  25. Kritieke kwetsbaarheid ontdekt in tbk dvr systemen: actie vereist https://t.co/gh3brvil1W #CVE-2024-3721 #TBK DVR kwetsbaarheid #os command injectie #kritieke beveiligingslek #TBK DVR-4104 DVR-4216 update #Trending #Tech #Nieuws

    @TrendingNewsBot

    8 Jun 2025

    47 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  26. Kritieke beveiligingslek in tbk dvr-systemen: cve-2024-3721 blootgelegd https://t.co/BexgbiSkx2 #CVE-2024-3721 #TBK DVR kwetsbaarheid #OS commando injectie #Cybersecurity bedreiging #Kritieke beveiligingslek #Trending #Tech #Nieuws

    @TrendingNewsBot

    8 Jun 2025

    47 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. Kritieke beveiligingslek in tbk dvr systemen stelt gebruikers bloot aan risico's https://t.co/5wNMC62Ayi #CVE-2024-3721 #TBK DVR-4104 #TBK DVR-4216 #OS Command Injectie #Beveiligingslek #Trending #Tech #Nieuws

    @TrendingNewsBot

    8 Jun 2025

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  28. Nieuwe mirai botnet variant infecteert tbk dvr-apparaten via command injection https://t.co/3qmQzFaQj4 #Mirai botnet #TBK DVR #command injection #CVE-2024-3721 #IoT beveiliging #Trending #Tech #Nieuws

    @TrendingNewsBot

    8 Jun 2025

    44 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  29. New Mirai botnet variant exploits TBK DVR devices via CVE-2024-3721, infecting 50K+ devices globally. Check IoCs and patch now to avoid DDoS attacks. Details: https://t.co/wQqmTlcWCB

    @RedTeamNewsBlog

    8 Jun 2025

    33 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  30. 🚨 Mirai Botnet Strikes Again: TBK DVR Devices Under Siege via #CVE-2024-3721 Exploit https://t.co/5vmslXfrPv

    @UndercodeNews

    8 Jun 2025

    66 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  31. New Mirai Botnet Variant Targets DVR Systems via CVE-2024-3721 https://t.co/uYlYrMymbu

    @the_yellow_fall

    8 Jun 2025

    515 Impressions

    2 Retweets

    7 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  32. カスペルスキーの研究者は、CVE-2024-3721の脆弱性を悪用し、Miraiボットネットの改良版をDVR型監視システムに感染させる新たな攻撃を発見した。攻撃は、Linuxコマンドを含むPOSTリクエストを脆弱なTBK DVRのエンド

    @yousukezan

    8 Jun 2025

    2691 Impressions

    1 Retweet

    16 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  33. Analysis of the latest Mirai wave exploiting TBK DVR devices with CVE-2024-3721 https://t.co/oeivC5yXRJ

    @taku888infinity

    8 Jun 2025

    755 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  34. #threatreport #MediumCompleteness Analysis of the latest Mirai wave exploiting TBK DVR devices with CVE-2024-3721 | 06-06-2025 Source: https://t.co/V82AExKZqc Key details below ↓ 💀Threats: Mirai, Bashlite, 🎯Victims: Dvr devices 🏭Industry: Iot 🌐Geo: Egypt, Russia

    @rst_cloud

    6 Jun 2025

    61 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  35. New Mirai variant exploits CVE-2024-3721 to target TBK DVR devices, deploying bots via malicious POST requests and ARM32 binaries. It features RC4 encryption & anti-VM tech, highlighting ongoing IoT risks. #Mirai #Vulnerability #Japan https://t.co/uDQeJhpUs1

    @TweetThreatNews

    6 Jun 2025

    76 Impressions

    0 Retweets

    0 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  36. We recently observed the use of CVE-2024-3721 in attempts to deploy a bot in one of our honeypot services. This bot variant turned out to be part of the infamous Mirai botnet, targeting DVR-based monitoring systems https://t.co/4SlJDQDiHX

    @assolini

    6 Jun 2025

    209 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  37. Analysis of the latest Mirai wave exploiting TBK DVR devices with CVE-2024-3721 https://t.co/FUYCiQFGjk

    @Dinosn

    6 Jun 2025

    2203 Impressions

    1 Retweet

    11 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  38. Securing your Wiki just got trickier—flexibility's a double-edged sword. With file uploads & markup vulnerabilities, your wiki's an easy target. CVE-2024-3721 proves it. Stay sharp! #WikiSecurity #Cybersecurity https://t.co/KdYBJK77IW

    @Synapze_

    30 Mar 2025

    24 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  39. Infocon is greenlighting the X-Wiki Search Vulnerability (CVE-2024-3721), served fresh. Hacker 101: how easy it is to break into systems when everyone’s looking the other way. #VulnHunter #Hacker101 https://t.co/VxyCp86eG2

    @Synapze_

    30 Mar 2025

    31 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  40. X-Wiki Search Vulnerability exploit attempts (CVE-2024-3721) https://t.co/wByVDM53cO https://t.co/tnX2wgiU1h

    @sans_isc

    25 Mar 2025

    1150 Impressions

    2 Retweets

    3 Likes

    1 Bookmark

    0 Replies

    0 Quotes