The web service of ByDemes Group Airspace CCTV Web Service in its 2.616.BY00.11 version, contains a privilege escalation vulnerability, detected in the Camera Control Panel, whose exploitation could allow a low-privileged attacker to gain administrator access.
Fixes

Solution

The reported vulnerability has already been fixed by the By Demes Group security team. Affected users are advised to upgrade to the latest version available. By Demes Group reminds that the affected devices are at end of life and are no longer supported, so it is recommended to upgrade to a newer model.


Workaround

No workaround given by the vendor.

History

Thu, 19 Sep 2024 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published:

Updated: 2024-09-19T20:15:43.067Z

Reserved: 2023-01-25T10:12:33.756Z

Link: CVE-2023-0506

cve-icon Vulnrichment

Updated: 2024-08-02T05:17:49.033Z

cve-icon NVD

Status : Modified

Published: 2023-10-03T14:15:10.473

Modified: 2024-11-21T07:37:18.557

Link: CVE-2023-0506

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.