CVE-2022-30620

8.2HIGH

On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Ad

Published: 7/18/2022Updated: 11/21/2024

Description

On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.

AI AnalysisPowered by AI

Affected Products

cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.0
cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.1
cellinxcellinx_nvt_-_ip_ptz_camera
-

References