Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-prhf-prrf-qvqw

Опубликовано: 27 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6
CVSS3: 7.2

Описание

A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply unsanitized XML fields to the device's certificate generation interface, which are incorporated into a backend certificate creation command without proper input validation. This may allow for command execution with elevated privileges during certificate generation.

A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply unsanitized XML fields to the device's certificate generation interface, which are incorporated into a backend certificate creation command without proper input validation. This may allow for command execution with elevated privileges during certificate generation.

EPSS

Процентиль: 28%
0.00353
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
около 1 месяца назад

A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply unsanitized XML fields to the device's certificate generation interface, which are incorporated into a backend certificate creation command without proper input validation. This may allow for command execution with elevated privileges during certificate generation.

EPSS

Процентиль: 28%
0.00353
Низкий

8.6 High

CVSS4

7.2 High

CVSS3

Дефекты

CWE-78