Description
Server-Side Request Forgery vulnerability in Haivision's Aviwest Manager and Aviwest Steamhub. This vulnerability could allow an attacker to enumerate internal network configuration without the need for credentials. An attacker could compromise an internal server and retrieve requests sent by other users.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17683 | Server-Side Request Forgery vulnerability in Haivision's Aviwest Manager and Aviwest Steamhub. This vulnerability could allow an attacker to enumerate internal network configuration without the need for credentials. An attacker could compromise an internal server and retrieve requests sent by other users. |
References
History
Thu, 10 Apr 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Haivision maanager
Haivision streamhub |
|
| CPEs | cpe:2.3:a:haivision:maanager:*:*:*:*:*:*:*:* cpe:2.3:a:haivision:streamhub:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Haivision maanager
Haivision streamhub |
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-02T17:08:02.850Z
Reserved: 2024-02-28T09:34:48.923Z
Link: CVE-2024-1965
Updated: 2024-08-02T17:06:05.779Z
Status : Analyzed
Published: 2024-02-28T13:15:07.987
Modified: 2025-04-10T19:26:56.720
Link: CVE-2024-1965
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD