CVE-2022-30620
8.2HIGHOn Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Ad
Опубликовано: 7/18/2022Обновлено: 11/21/2024
Описание
On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.
ИИ-АнализНа базе ИИ
Затронутые продукты
cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.0
cellinxcellinx_nvt_-_ip_ptz_camera_firmware
3.2.1
cellinxcellinx_nvt_-_ip_ptz_camera
-
Ссылки
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory