Metrics
Affected Vendors & Products
Mon, 04 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
kev
|
Mon, 04 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
ssvc
|
Tue, 29 Oct 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | ||
Vendors & Products |
Ptzoptics pt30x-sdi.ndi-xx
|
Tue, 01 Oct 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ptzoptics pt30x-ndi-xx-g2
Ptzoptics pt30x-ndi-xx-g2 Firmware Ptzoptics pt30x-sdi Ptzoptics pt30x-sdi Firmware |
|
CPEs | cpe:2.3:h:ptzoptics:pt30x-ndi-xx-g2:-:*:*:*:*:*:*:* cpe:2.3:h:ptzoptics:pt30x-sdi:-:*:*:*:*:*:*:* cpe:2.3:o:ptzoptics:pt30x-ndi-xx-g2_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ptzoptics:pt30x-sdi_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Ptzoptics pt30x-ndi-xx-g2
Ptzoptics pt30x-ndi-xx-g2 Firmware Ptzoptics pt30x-sdi Ptzoptics pt30x-sdi Firmware |
Tue, 17 Sep 2024 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ptzoptics
Ptzoptics pt30x-sdi.ndi-xx |
|
CPEs | cpe:2.3:a:ptzoptics:pt30x-sdi.ndi-xx:*:*:*:*:*:*:*:* | |
Vendors & Products |
Ptzoptics
Ptzoptics pt30x-sdi.ndi-xx |
|
Metrics |
ssvc
|
Tue, 17 Sep 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does not properly enforce authentication to /cgi-bin/param.cgi when requests are sent without an HTTP Authorization header. The result is a remote and unauthenticated attacker can leak sensitive data such as usernames, password hashes, and configurations details. Additionally, the attacker can update individual configuration values or overwrite the whole file. | |
Title | PTZOptics NDI and SDI Cameras /cgi-bin/param.cgi Insufficient Authentication | |
Weaknesses | CWE-287 | |
References |
| |
Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2024-09-17T19:59:27.205Z
Updated: 2024-11-04T17:20:22.472Z
Reserved: 2024-09-17T19:08:47.005Z
Link: CVE-2024-8956
Updated: 2024-09-17T20:53:53.285Z
Status : Analyzed
Published: 2024-09-17T20:15:07.287
Modified: 2024-11-05T02:00:01.697
Link: CVE-2024-8956
No data.