Path Traversal in VGuard IP Camera Network Recorder
Published Jan 26, 2024
7.5
HIGHCVSS 3.1
EPSS 0.59%
Description
Path Traversal: '/../filedir' vulnerability in Biges Safe Life Technologies Electronics Inc. VGuard allows Absolute Path Traversal.
This issue affects VGuard: before V500.0003.R008.4011.C0012.B351.C.
Affected products
-
Affected
- ≥ 0, < V500.0003.R008.4011.C0012.B351.C
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Biges Safe Life Technologies Electronics Inc. | VGuard | unaffected | Affected
|
Configuration 1
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 2
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 3
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 4
- < 500.0003.r008.4011.c0012.b351.c
Configuration 5
- < 500.0003.r008.4011.c0012.b351.c
Configuration 6
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 7
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 8
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
Configuration 9
- < 500.0003.r008.4011.c0012.b351.c
Running on/with
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (3)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-59118 Advisory
- https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-0054 government-resource
- https://www.usom.gov.tr/bildirim/tr-24-0054 government-resourcebroken-linkThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-59118 | Advisory | |
| https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-24-0054 | government-resource | |
| https://www.usom.gov.tr/bildirim/tr-24-0054 | government-resourcebroken-linkThird Party Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data