Vulnerabilites related to neutron - neu-ipbm411
Vulnerability from fkie_nvd
Published
2023-11-23 15:15
Modified
2024-11-21 08:43
Summary
Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.



{
  "configurations": [
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipb210-28_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "E9E17F5B-4BCD-4B73-B75E-E2DF2A881568",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipb210-28:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "02E29DB6-831D-4D32-9977-377505D7154E",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-pt-06wod-3mp_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "DD8EB50E-AB61-4164-A64B-767D88C11178",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-pt-06wod-3mp:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "CC3FB86D-1E37-4DB8-8CC8-B3EF9D222118",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipb410-28_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "B08ECB23-FD9F-4349-BC23-C60DCB1C492C",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipb410-28:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "7A10018A-43D9-4D2E-A9AC-550C5D7D6E13",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-bc-01w_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "8CE3F378-9281-42E3-BB9C-EE65F625C0D6",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-bc-01w:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "4D2D9338-5E7C-4519-BDE1-6B827D2CB55F",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipbm211_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "BA541A95-FAF0-4E97-B795-E9F295EB8781",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipbm211:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "8C0D0159-2A14-421E-894F-7E3A5159274E",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-pt-09-wos-3mp_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "9C7F2C36-C14D-4DFA-8E32-BBCA1B9F7020",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-pt-09-wos-3mp:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "D14FDBEB-6F79-4788-8720-BFFEEDA2E05D",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipbm411_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "79C1B425-92A1-40F2-B855-D462102E50B6",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipbm411:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "5E8F3B75-97FE-4456-9D37-327283CAEEF1",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-pt-10-4gwos-3mp_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "24AE955A-C6FC-4000-812B-84438C0F4832",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-pt-10-4gwos-3mp:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "24CF1DB2-9D3E-40EE-A640-BD70EF9C67C0",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ipc2224-sr3-npf-36_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "C0A6911A-BC7D-426F-A0A1-DCE8DFB6E472",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ipc2224-sr3-npf-36:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "597EAF61-E256-4E2B-9E3B-EA8CDCFE2623",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ipc2624-sr3-npf-36_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "1C49227E-A9B1-4F80-BA1A-8F1FDF257A46",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ipc2624-sr3-npf-36:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "51A15202-CCFD-46C8-86E2-CCD68EADAAC2",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-bc-03-snm_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "BC42EE6D-2F7B-4B95-99AA-7EAB593E795E",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-bc-03-snm:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "99011562-59ED-45D1-AFFE-D19BD1B74DB8",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-bc-03-snp_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "786836E4-7A57-464E-94B9-1F6F4F8C159F",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-bc-03-snp:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "E2EA5604-EF9F-4FF7-AA8D-38C626DB1B3B",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipd220-28_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "27FD6535-5A60-4AFB-BB3C-8A7AA6A88CB6",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipd220-28:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "113B05D6-6263-4379-80EA-40E5B95468A4",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-bc01-m_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "B81FB586-9DE5-4108-A213-6C969E8BB8E9",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-bc01-m:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "EA533B42-E832-4817-BC68-530DBA778EED",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipdm221_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "BE3208EB-EC1B-4CC2-8044-52F003719112",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipdm221:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "8749B6F5-5E72-41C5-93A5-024E61C2FECB",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:neu-ipdm421_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "6D28A715-523B-4B4D-82EA-57D99BB39245",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:neu-ipdm421:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "268747DD-EE4A-4379-B8D7-792CDFF0FE47",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:neutron:ntl-ip05-3mp_firmware:*:*:*:*:*:*:*:*",
              "matchCriteriaId": "1D10738A-B998-48F6-9DE7-B38D011986E7",
              "versionEndExcluding": "b1130.1.0.1",
              "vulnerable": true
            }
          ],
          "negate": false,
          "operator": "OR"
        },
        {
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:neutron:ntl-ip05-3mp:-:*:*:*:*:*:*:*",
              "matchCriteriaId": "2DEE39BB-5792-4807-908C-5CDB086F5A4F",
              "vulnerable": false
            }
          ],
          "negate": false,
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "cveTags": [],
  "descriptions": [
    {
      "lang": "en",
      "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.\n\n"
    },
    {
      "lang": "es",
      "value": ": Path Traversal: la vulnerabilidad \u0027/../filedir\u0027 en Neutron IP Camera permite un Absolute Path Traversal. Este problema afecta a IP Camera: anterior a b1130.1.0.1."
    }
  ],
  "id": "CVE-2023-6118",
  "lastModified": "2024-11-21T08:43:09.967",
  "metrics": {
    "cvssMetricV31": [
      {
        "cvssData": {
          "attackComplexity": "LOW",
          "attackVector": "NETWORK",
          "availabilityImpact": "NONE",
          "baseScore": 7.5,
          "baseSeverity": "HIGH",
          "confidentialityImpact": "HIGH",
          "integrityImpact": "NONE",
          "privilegesRequired": "NONE",
          "scope": "UNCHANGED",
          "userInteraction": "NONE",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
          "version": "3.1"
        },
        "exploitabilityScore": 3.9,
        "impactScore": 3.6,
        "source": "iletisim@usom.gov.tr",
        "type": "Primary"
      }
    ]
  },
  "published": "2023-11-23T15:15:10.583",
  "references": [
    {
      "source": "iletisim@usom.gov.tr",
      "tags": [
        "Third Party Advisory"
      ],
      "url": "https://www.usom.gov.tr/bildirim/tr-23-0658"
    },
    {
      "source": "af854a3a-2127-422b-91ae-364da2661108",
      "tags": [
        "Third Party Advisory"
      ],
      "url": "https://www.usom.gov.tr/bildirim/tr-23-0658"
    }
  ],
  "sourceIdentifier": "iletisim@usom.gov.tr",
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-25"
        }
      ],
      "source": "iletisim@usom.gov.tr",
      "type": "Secondary"
    },
    {
      "description": [
        {
          "lang": "en",
          "value": "CWE-22"
        }
      ],
      "source": "nvd@nist.gov",
      "type": "Primary"
    }
  ]
}

CVE-2023-6118 (GCVE-0-2023-6118)
Vulnerability from cvelistv5
Published
2023-11-23 14:24
Modified
2024-12-02 19:38
CWE
  • CWE-25 - Path Traversal: '/../filedir'
Summary
Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.
References
Impacted products
Vendor Product Version
Neutron IP Camera Version: 0   < b1130.1.0.1
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-02T08:21:17.776Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "government-resource",
              "x_transferred"
            ],
            "url": "https://www.usom.gov.tr/bildirim/tr-23-0658"
          }
        ],
        "title": "CVE Program Container"
      },
      {
        "metrics": [
          {
            "other": {
              "content": {
                "id": "CVE-2023-6118",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "yes"
                  },
                  {
                    "Technical Impact": "partial"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2023-12-05T15:43:27.260445Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2024-12-02T19:38:10.447Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "IP Camera",
          "vendor": "Neutron",
          "versions": [
            {
              "lessThan": "b1130.1.0.1",
              "status": "affected",
              "version": "0",
              "versionType": "custom"
            }
          ]
        }
      ],
      "credits": [
        {
          "lang": "en",
          "type": "finder",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "Cemil Sefa OZCAN"
        },
        {
          "lang": "en",
          "type": "coordinator",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "Omer YILMAZ"
        },
        {
          "lang": "en",
          "type": "analyst",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "Efe OZEL"
        },
        {
          "lang": "en",
          "type": "sponsor",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "fordefence.com"
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "supportingMedia": [
            {
              "base64": false,
              "type": "text/html",
              "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.\u003cp\u003eThis issue affects IP Camera: before b1130.1.0.1.\u003c/p\u003e"
            }
          ],
          "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.\n\n"
        }
      ],
      "impacts": [
        {
          "capecId": "CAPEC-597",
          "descriptions": [
            {
              "lang": "en",
              "value": "CAPEC-597 Absolute Path Traversal"
            }
          ]
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 7.5,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "cweId": "CWE-25",
              "description": "CWE-25 Path Traversal: \u0027/../filedir\u0027",
              "lang": "en",
              "type": "CWE"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2023-11-24T07:44:36.259Z",
        "orgId": "ca940d4e-fea4-4aa2-9a58-591a58b1ce21",
        "shortName": "TR-CERT"
      },
      "references": [
        {
          "tags": [
            "government-resource"
          ],
          "url": "https://www.usom.gov.tr/bildirim/tr-23-0658"
        }
      ],
      "source": {
        "advisory": "TR-23-0658",
        "defect": [
          "TR-23-0658"
        ],
        "discovery": "UNKNOWN"
      },
      "title": "Path Traversal in Neutron IP Camera",
      "x_generator": {
        "engine": "Vulnogram 0.1.0-dev"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "ca940d4e-fea4-4aa2-9a58-591a58b1ce21",
    "assignerShortName": "TR-CERT",
    "cveId": "CVE-2023-6118",
    "datePublished": "2023-11-23T14:24:24.001Z",
    "dateReserved": "2023-11-14T07:38:37.052Z",
    "dateUpdated": "2024-12-02T19:38:10.447Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.1"
}