PT-2022-23636 · Unknown · Cameralyzer

Sergey Toshin

·

Published

2022-08-05

·

Updated

2023-06-27

·

CVE-2022-36832

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cameralyzer versions prior to 3.2.22 Cameralyzer versions prior to 3.3.22 Cameralyzer versions prior to 3.4.22 Cameralyzer versions prior to 3.5.51
Description An improper access control issue in the WebApp component of Cameralyzer allows attackers to access external storage with Cameralyzer privileges.
Recommendations For versions prior to 3.2.22, update to version 3.2.22 or later. For versions prior to 3.3.22, update to version 3.3.22 or later. For versions prior to 3.4.22, update to version 3.4.22 or later. For versions prior to 3.5.51, update to version 3.5.51 or later.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-36832

Affected Products

Cameralyzer