Skip to content

Products › Brands

Brand

NUUO: actively exploited vulnerabilities

2 vulnerabilities in NUUO products (NVRmini / NVRmini2) are in CISA’s catalog of exploited vulnerabilities. Last added: December 18, 2024.

By category

Add just one NUUO category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

  • NVRmini / NVRmini22 vulnerabilities, Home routers and IoT

Name used by CISA: NUUO. Product families: indicative classification by this site.

End of life: remove

These products are no longer supported: no patch is coming. Remove them or isolate them from the network.

  1. NUUO NVRmini / NVRmini2CVE-2018-14933

    NUUO NVRmini Devices OS Command Injection Vulnerability

    End of lifeCVE from 2018, added in 2024

    CVSS severity 9.8critical

    Added Dec 18, 2024

  2. NUUO NVRmini / NVRmini2CVE-2022-23227

    NUUO NVRmini2 Devices Missing Authentication Vulnerability

    End of lifeCVE from 2022, added in 2024

    CVSS severity 9.8critical

    Added Dec 18, 2024

Follow and verify

Indicative classification, based on the vendor and product names given by CISA. How products are classified.