Vulnerabilities > Cellinx > Cellinx NVT IP PTZ Camera Firmware

DATE CVE VULNERABILITY TITLE RISK
2022-07-18 CVE-2022-30620 Reliance on Cookies without Validation and Integrity Checking vulnerability in Cellinx NVT - IP PTZ Camera Firmware 3.2.0/3.2.1
On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig".
network
low complexity
cellinx CWE-565
8.8
2022-07-18 CVE-2022-30621 Use of Incorrectly-Resolved Name or Reference vulnerability in Cellinx NVT - IP PTZ Camera Firmware 3.2.0/3.2.1
Allows a remote user to read files on the camera's OS "GetFileContent.cgi".
network
low complexity
cellinx CWE-706
6.5