Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2024-24215
Disclosure Date: February 08, 2024 (last updated February 16, 2024)
An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configuration information via a crafted POST request.
0
Attacker Value
Unknown
CVE-2023-23063
Disclosure Date: February 22, 2023 (last updated March 08, 2024)
Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi.
0
Attacker Value
Unknown
CVE-2022-30620
Disclosure Date: July 06, 2022 (last updated October 07, 2023)
On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.
0
Attacker Value
Unknown
CVE-2022-30621
Disclosure Date: July 06, 2022 (last updated October 07, 2023)
Allows a remote user to read files on the camera's OS "GetFileContent.cgi". Reading arbitrary files on the camera's OS as root user.
0
Attacker Value
Unknown
CVE-2020-28250
Disclosure Date: November 06, 2020 (last updated February 22, 2025)
Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side.
0