<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Digiever</title><description>Actively exploited vulnerabilities affecting Digiever products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/digiever.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2023-52163 — Digiever DS-2105 Pro Missing Authorization Vulnerability</title><link>https://wildfortech.com/security#CVE-2023-52163</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2023-52163</guid><description>The Digiever DS-2105 Pro network video recorder fails to enforce proper authorization checks on its time_tzsetup.cgi endpoint, allowing an unauthenticated or unauthorized attacker to inject and execute arbitrary commands on the device. This means an attacker could fully compromise the NVR, potentially using it as a foothold into the broader network, disrupting surveillance operations, or recruiting the device into a botnet — all without needing valid credentials.</description><pubDate>Mon, 22 Dec 2025 00:00:00 GMT</pubDate><category>Digiever</category><category>DS-2105 Pro</category></item></channel></rss>