CVEs Blog | G5 Cyber Security

CVE-2020-11680 – Castel NextGen DVR v1.0.0 is vulnerable to authorization bypass on all ad

Castel NextGen DVR v1.0.0 is vulnerable to authorization bypass on all administrator functionality. The application fails to check that a request was submitted by an administrator. Consequently, a normal user can perform actions including, but not limited to, creating/modifying the file store, creating/modifying alerts, creating/modifying users, etc.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-11680

Reference (s):

Exit mobile version