Description
A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK) and classified as problematic. Affected by this issue is some unknown functionality of the file /php/exportrecord.php. The manipulation of the argument downname with the input C:\ICPAS\Wnmp\WWW\php\conversion.php leads to path traversal. The exploit has been disclosed to the public and may be used. Upgrading to version 4.1.0 is able to address this issue. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-248252.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Subscriptions
Hikvision
Subscribe
Ds-kd-bk
Subscribe
Ds-kd-dis
Subscribe
Ds-kd-e
Subscribe
Ds-kd-in
Subscribe
Ds-kd-info
Subscribe
Ds-kd-kk
Subscribe
Ds-kd-kk\/s
Subscribe
Ds-kd-kp
Subscribe
Ds-kd-kp\/s
Subscribe
Ds-kd-m
Subscribe
Ds-kd3003-e6
Subscribe
Ds-kd8003ime1\(b\)
Subscribe
Ds-kd8003ime1\(b\)\/flush
Subscribe
Ds-kd8003ime1\(b\)\/ns
Subscribe
Ds-kd8003ime1\(b\)\/s
Subscribe
Ds-kd8003ime1\(b\)\/surface
Subscribe
Ds-kh6220-le1
Subscribe
Ds-kh6320-le1
Subscribe
Ds-kh6320-tde1
Subscribe
Ds-kh6320-te1
Subscribe
Ds-kh6320-wtde1
Subscribe
Ds-kh6320-wte1
Subscribe
Ds-kh6350-wte1
Subscribe
Ds-kh6351-te1
Subscribe
Ds-kh6351-wte1
Subscribe
Ds-kh63le1\(b\)
Subscribe
Ds-kh8520-wte1
Subscribe
Ds-kh9310-wte1\(b\)
Subscribe
Ds-kh9510-wte1\(b\)
Subscribe
Intercom Broadcast System
Subscribe
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-02T08:42:08.394Z
Reserved: 2023-12-16T15:16:04.420Z
Link: CVE-2023-6893
No data.
Status : Modified
Published: 2023-12-17T07:15:07.137
Modified: 2024-11-21T08:44:46.670
Link: CVE-2023-6893
No data.
OpenCVE Enrichment
No data.
Weaknesses