PT-2023-23399 · Videolan+1 · Vlc+1

Youssef Mohamed

·

Published

2023-05-25

·

Updated

2026-01-27

·

CVE-2023-31594

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IC Realtime ICIP-P2012T version 2.420
Description The issue concerns an Incorrect Access Control vulnerability. It can be exploited via an exposed HTTP channel using the VLC network.
Recommendations For IC Realtime ICIP-P2012T version 2.420, consider restricting access to the exposed HTTP channel as a temporary mitigation measure until a patch is available.

Exploit

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2023-31594

Affected Products

Icip-P2012T
Vlc