CVE-2022-30620
8.2HIGHOn Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Ad
Veröffentlicht: 7/18/2022Aktualisiert: 11/21/2024
Beschreibung
On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.
KI-AnalyseKI-gestützt
Betroffene Produkte
cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.0
cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.1
cellinxcellinx_nvt_-_ip_ptz_camera
-
Referenzen
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory