Skip to content
English

Products › Brands

Brand

NUUO: actively exploited vulnerabilities

2 vulnerabilities in NUUO products (NVRmini / NVRmini2) are in CISA’s catalog of exploited vulnerabilities. Last added: December 18, 2024.

By category

Add just one NUUO category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

  • NVRmini / NVRmini2 2 vulnerabilities · Home routers and IoT

Name used by CISA: NUUO. Product families: indicative classification by this site.

End of life: remove

These products are no longer supported: no patch is coming. Remove them or isolate them from the network.

  1. NUUO NVRmini / NVRmini2

    CVE-2018-14933

    End of lifeCVE from 2018, added in 2024

    NUUO NVRmini Devices OS Command Injection Vulnerability

    End-of-life product: no patch is coming; remove or isolate it.

    Added
    Dec 18, 2024
    CISA deadline
    21 days
    CVSS severity
    9.8 (critical)
  2. NUUO NVRmini / NVRmini2

    CVE-2022-23227

    End of lifeCVE from 2022, added in 2024

    NUUO NVRmini2 Devices Missing Authentication Vulnerability

    End-of-life product: no patch is coming; remove or isolate it.

    Added
    Dec 18, 2024
    CISA deadline
    21 days
    CVSS severity
    9.8 (critical)

Follow and verify

Indicative classification, based on the vendor and product names given by CISA. How products are classified.