Vulnerabilities > Hitachi > HC Ip9100Hd Firmware > 1.07

DATE CVE VULNERABILITY TITLE RISK
2022-08-29 CVE-2022-37680 Missing Authentication for Critical Function vulnerability in Hitachi Hc-Ip9100Hd Firmware 1.07
An improper authentication for critical function issue in Hitachi Kokusai Electric Network products for monitoring system (Camera, Decoder and Encoder) and bellow allows attckers to remotely reboot the device via a crafted POST request to the endpoint /ptipupgrade.cgi.
network
low complexity
hitachi CWE-306
7.5
2022-08-29 CVE-2022-37681 Path Traversal vulnerability in Hitachi Hc-Ip9100Hd Firmware 1.07
Hitachi Kokusai Electric Newtork products for monitoring system (Camera, Decoder and Encoder) and below allows attckers to perform a directory traversal via a crafted GET request to the endpoint /ptippage.cgi.
network
low complexity
hitachi CWE-22
7.5