CVE-2022-37680
29.08.2022, 23:15
An improper authentication for critical function issue in Hitachi Kokusai Electric Network products for monitoring system (Camera, Decoder and Encoder) and bellow allows attckers to remotely reboot the device via a crafted POST request to the endpoint /ptipupgrade.cgi. Security information ID hitachi-sec-2022-001 contains fixes for the issue.Enginsight
Vendor | Product | Version |
---|---|---|
hitachi | hc-ip9100hd_firmware | 𝑥 ≤ 1.07 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration