CVE-2022-30621

Allows a remote user to read files on the camera's OS "GetFileContent.cgi". Reading arbitrary files on the camera's OS as root user.
References
Link Resource
https://www.gov.il/en/departments/faq/cve_advisories Third Party Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cellinx:cellinx_nvt_-_ip_ptz_camera_firmware:3.2.0:*:*:*:*:*:*:*
cpe:2.3:o:cellinx:cellinx_nvt_-_ip_ptz_camera_firmware:3.2.1:*:*:*:*:*:*:*
cpe:2.3:h:cellinx:cellinx_nvt_-_ip_ptz_camera:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-07-18 13:15

Updated : 2024-02-28 19:29


NVD link : CVE-2022-30621

Mitre link : CVE-2022-30621

CVE.ORG link : CVE-2022-30621


JSON object : View

Products Affected

cellinx

  • cellinx_nvt_-_ip_ptz_camera
  • cellinx_nvt_-_ip_ptz_camera_firmware
CWE
CWE-706

Use of Incorrectly-Resolved Name or Reference