| ID | CVE-2020-11680 | ||||||
| Sažetak | Castel NextGen DVR v1.0.0 is vulnerable to authorization bypass on all administrator functionality. The application fails to check that a request was submitted by an administrator. Consequently, a normal user can perform actions including, but not limited to, creating/modifying the file store, creating/modifying alerts, creating/modifying users, etc. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:S/C:N/I:P/A:N | ||||||
| Zadnje važnije ažuriranje | 21-07-2021 - 11:39 | ||||||
| Objavljeno | 04-06-2020 - 19:15 |

