CVE-2023-6118
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 23, 2023
Updated: Nov 30, 2023
CWE ID 22
CWE ID 25
Summary
CVE-2023-6118 is a path traversal vulnerability affecting Neutron IP Cameras before b1130.1.0.1. An attacker can exploit this issue by manipulating the file path to traverse directories and potentially access sensitive files, leading to unauthorized information disclosure or even system compromise. The vulnerability is due to insufficient input validation in the handling of user-supplied file paths, allowing the attacker to navigate outside of the intended directory ('/../filedir') and access files in other directories.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share