CVE-2020-24219
Attackers can send crafted unauthenticated HTTP requests to exploit path traversal and pattern-matching programming flaws, and retrieve any file from the device's file system, including the configuration file with the cleartext administrative password.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 23.6%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
An issue was discovered on URayTech IPTV/H.264/H.265 video encoders through 1.97. Attackers can send crafted unauthenticated HTTP requests to exploit path traversal and pattern-matching programming flaws, and retrieve any file from the device's file system, including the configuration file with the cleartext administrative password.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 23.64% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- szuray/iptv\/h.264 video encoder firmware · szuray/iptv\/h.265 video encoder firmware
- Source
- cve@mitre.org
References
- http://packetstormsecurity.com/files/159595/HiSilicon-Video-Encoder-1.97-File-Disclosure-Path-Traversal.htmlExploit, Third Party Advisory, VDB Entry
- https://kojenov.com/2020-09-15-hisilicon-encoder-vulnerabilities/Exploit, Third Party Advisory
- https://www.kb.cert.org/vuls/id/896979Third Party Advisory, US Government Resource
- http://packetstormsecurity.com/files/159595/HiSilicon-Video-Encoder-1.97-File-Disclosure-Path-Traversal.htmlExploit, Third Party Advisory, VDB Entry
- https://kojenov.com/2020-09-15-hisilicon-encoder-vulnerabilities/Exploit, Third Party Advisory
- https://www.kb.cert.org/vuls/id/896979Third Party Advisory, US Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.