Cellinx records
5 published records for vendor cellinx.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-565 Reliance on Cookies without Validation and Integrity Checking1
- CWE-706 Use of Incorrectly-Resolved Name or Reference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2020-28250No exploit | Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authenticationcellinx · nvt web server | Critical9.8 | — | 2.9% | Nov 6, 2020 |
35Monitor | CVE-2022-30620No exploit | Cellinx NVT – IP PTZ Camera Privilege Escalationcellinx · cellinx nvt - ip ptz camera firmware · CWE-565 | High8.8 | — | 0.5% | Jul 18, 2022 |
31Monitor | CVE-2023-23063Proof of concept | Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi.cellinx · nvt web server · CWE-22 | High7.5 | — | 2.4% | Feb 22, 2023 |
26Monitor | CVE-2022-30621No exploit | Cellinx NVT – IP PTZ Camera local file inclusioncellinx · cellinx nvt - ip ptz camera firmware · CWE-706 | Medium6.5 | — | 0.7% | Jul 18, 2022 |
21Monitor | CVE-2024-24215No exploit | An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configuration information vcellinx · nvt web server · CWE-200 | Medium5.3 | — | 0.5% | Feb 8, 2024 |
- CVE-2020-2825040Plan
Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication
CriticalCVSS 9.8No exploitEPSS 3%cellinx · nvt web serverNov 6, 2020
- CVE-2022-3062035Monitor
Cellinx NVT – IP PTZ Camera Privilege Escalation
HighCVSS 8.8No exploitEPSS 1%cellinx · cellinx nvt - ip ptz camera firmwareJul 18, 2022
- CVE-2023-2306331Monitor
Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi.
HighCVSS 7.5Proof of conceptEPSS 2%cellinx · nvt web serverFeb 22, 2023
- CVE-2022-3062126Monitor
Cellinx NVT – IP PTZ Camera local file inclusion
MediumCVSS 6.5No exploitEPSS 1%cellinx · cellinx nvt - ip ptz camera firmwareJul 18, 2022
- CVE-2024-2421521Monitor
An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configuration information v
MediumCVSS 5.3No exploitEPSS 1%cellinx · nvt web serverFeb 8, 2024