PT-2024-37371 · Intelbras · Intelbras Incontrol

Stux

·

Published

2024-06-17

·

Updated

2024-11-04

·

CVE-2024-6080

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intelbras InControl version 2.21.56
Description: A critical vulnerability was found in Intelbras InControl, affecting unknown code of the component incontrolWebcam Service. The manipulation leads to an unquoted search path, requiring local access to approach this attack. The exploit has been disclosed to the public and may be used.
Recommendations: For Intelbras InControl version 2.21.56, upgrade to version 2.21.58 to address this issue. It is recommended to upgrade the affected component as soon as possible.

Fix

Untrusted Search Path

Weakness Enumeration

Related Identifiers

CVE-2024-6080

Affected Products

Intelbras Incontrol