time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1469
Reference (s):
- CERT-VN:VU#522460
- URL: http://www.kb.cert.org/vuls/id/522460