A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56. This affects an unknown part of the file C:\Program Files (x86)\Intelbras\Incontrol Cliente\incontrol_webcam\incontrol-service-watchdog.exe. The manipulation leads to unquoted search path. It is possible to launch the attack on the local host. Upgrading to version 2.21.58 is able to address this issue. It is recommended to upgrade the affected component. The vendor was informed early on 2024-08-05 about this issue. The release of a fixed version 2.21.58 was announced for the end of August 2024 but then was postponed until 2024-09-20.
References
Configurations
History
04 Nov 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) A vulnerability classified as critical has been found in Intelbras InControl up to 2.21.56. This affects an unknown part of the file C:\Program Files (x86)\Intelbras\Incontrol Cliente\incontrol_webcam\incontrol-service-watchdog.exe. The manipulation leads to unquoted search path. It is possible to launch the attack on the local host. Upgrading to version 2.21.58 is able to address this issue. It is recommended to upgrade the affected component. The vendor was informed early on 2024-08-05 about this issue. The release of a fixed version 2.21.58 was announced for the end of August 2024 but then was postponed until 2024-09-20. | |
References |
|
|
CWE | CWE-426 |
07 Oct 2024, 16:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://vuldb.com/?ctiid.278829 - Permissions Required | |
References | () https://vuldb.com/?id.278829 - Permissions Required | |
References | () https://vuldb.com/?submit.385397 - Exploit, Third Party Advisory | |
First Time |
Intelbras incontrol Web
Intelbras |
|
CPE | cpe:2.3:a:intelbras:incontrol_web:*:*:*:*:*:*:*:* |
30 Sep 2024, 12:45
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
29 Sep 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-29 08:15
Updated : 2024-11-04 19:15
NVD link : CVE-2024-9325
Mitre link : CVE-2024-9325
CVE.ORG link : CVE-2024-9325
JSON object : View
Products Affected
intelbras
- incontrol_web