CVE-2022-30620

On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.

MISC: https://www.gov.il/en/departments/faq/cve_advisories
CVE: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-30620

14 years
257 countries
685k users
4536k calculations
Logo www.elsec.cz
Logo www.systemy-stech.cz
Logo www.kelcom.cz
Logo www.power-shop.gr
Logo www.a1securitycameras.com
Logo sectech.co.nz