Vulnerabilites related to neutron - ntl-pt-09-wos-3mp
Vulnerability from fkie_nvd
Published
2023-11-23 15:15
Modified
2024-11-21 08:43
Severity ?
Summary
Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.
References
▶ | URL | Tags | |
---|---|---|---|
iletisim@usom.gov.tr | https://www.usom.gov.tr/bildirim/tr-23-0658 | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://www.usom.gov.tr/bildirim/tr-23-0658 | Third Party Advisory |
Impacted products
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipb210-28_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "E9E17F5B-4BCD-4B73-B75E-E2DF2A881568", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipb210-28:-:*:*:*:*:*:*:*", "matchCriteriaId": "02E29DB6-831D-4D32-9977-377505D7154E", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-pt-06wod-3mp_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "DD8EB50E-AB61-4164-A64B-767D88C11178", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-pt-06wod-3mp:-:*:*:*:*:*:*:*", "matchCriteriaId": "CC3FB86D-1E37-4DB8-8CC8-B3EF9D222118", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipb410-28_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "B08ECB23-FD9F-4349-BC23-C60DCB1C492C", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipb410-28:-:*:*:*:*:*:*:*", "matchCriteriaId": "7A10018A-43D9-4D2E-A9AC-550C5D7D6E13", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-bc-01w_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "8CE3F378-9281-42E3-BB9C-EE65F625C0D6", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-bc-01w:-:*:*:*:*:*:*:*", "matchCriteriaId": "4D2D9338-5E7C-4519-BDE1-6B827D2CB55F", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipbm211_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "BA541A95-FAF0-4E97-B795-E9F295EB8781", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipbm211:-:*:*:*:*:*:*:*", "matchCriteriaId": "8C0D0159-2A14-421E-894F-7E3A5159274E", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-pt-09-wos-3mp_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "9C7F2C36-C14D-4DFA-8E32-BBCA1B9F7020", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-pt-09-wos-3mp:-:*:*:*:*:*:*:*", "matchCriteriaId": "D14FDBEB-6F79-4788-8720-BFFEEDA2E05D", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipbm411_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "79C1B425-92A1-40F2-B855-D462102E50B6", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipbm411:-:*:*:*:*:*:*:*", "matchCriteriaId": "5E8F3B75-97FE-4456-9D37-327283CAEEF1", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-pt-10-4gwos-3mp_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "24AE955A-C6FC-4000-812B-84438C0F4832", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-pt-10-4gwos-3mp:-:*:*:*:*:*:*:*", "matchCriteriaId": "24CF1DB2-9D3E-40EE-A640-BD70EF9C67C0", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ipc2224-sr3-npf-36_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "C0A6911A-BC7D-426F-A0A1-DCE8DFB6E472", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ipc2224-sr3-npf-36:-:*:*:*:*:*:*:*", "matchCriteriaId": "597EAF61-E256-4E2B-9E3B-EA8CDCFE2623", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ipc2624-sr3-npf-36_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "1C49227E-A9B1-4F80-BA1A-8F1FDF257A46", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ipc2624-sr3-npf-36:-:*:*:*:*:*:*:*", "matchCriteriaId": "51A15202-CCFD-46C8-86E2-CCD68EADAAC2", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-bc-03-snm_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "BC42EE6D-2F7B-4B95-99AA-7EAB593E795E", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-bc-03-snm:-:*:*:*:*:*:*:*", "matchCriteriaId": "99011562-59ED-45D1-AFFE-D19BD1B74DB8", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-bc-03-snp_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "786836E4-7A57-464E-94B9-1F6F4F8C159F", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-bc-03-snp:-:*:*:*:*:*:*:*", "matchCriteriaId": "E2EA5604-EF9F-4FF7-AA8D-38C626DB1B3B", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipd220-28_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "27FD6535-5A60-4AFB-BB3C-8A7AA6A88CB6", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipd220-28:-:*:*:*:*:*:*:*", "matchCriteriaId": "113B05D6-6263-4379-80EA-40E5B95468A4", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-bc01-m_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "B81FB586-9DE5-4108-A213-6C969E8BB8E9", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-bc01-m:-:*:*:*:*:*:*:*", "matchCriteriaId": "EA533B42-E832-4817-BC68-530DBA778EED", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipdm221_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "BE3208EB-EC1B-4CC2-8044-52F003719112", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipdm221:-:*:*:*:*:*:*:*", "matchCriteriaId": "8749B6F5-5E72-41C5-93A5-024E61C2FECB", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:neu-ipdm421_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "6D28A715-523B-4B4D-82EA-57D99BB39245", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:neu-ipdm421:-:*:*:*:*:*:*:*", "matchCriteriaId": "268747DD-EE4A-4379-B8D7-792CDFF0FE47", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:neutron:ntl-ip05-3mp_firmware:*:*:*:*:*:*:*:*", "matchCriteriaId": "1D10738A-B998-48F6-9DE7-B38D011986E7", "versionEndExcluding": "b1130.1.0.1", "vulnerable": true } ], "negate": false, "operator": "OR" }, { "cpeMatch": [ { "criteria": "cpe:2.3:h:neutron:ntl-ip05-3mp:-:*:*:*:*:*:*:*", "matchCriteriaId": "2DEE39BB-5792-4807-908C-5CDB086F5A4F", "vulnerable": false } ], "negate": false, "operator": "OR" } ], "operator": "AND" } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.\n\n" }, { "lang": "es", "value": ": Path Traversal: la vulnerabilidad \u0027/../filedir\u0027 en Neutron IP Camera permite un Absolute Path Traversal. Este problema afecta a IP Camera: anterior a b1130.1.0.1." } ], "id": "CVE-2023-6118", "lastModified": "2024-11-21T08:43:09.967", "metrics": { "cvssMetricV31": [ { "cvssData": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 7.5, "baseSeverity": "HIGH", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "exploitabilityScore": 3.9, "impactScore": 3.6, "source": "iletisim@usom.gov.tr", "type": "Primary" } ] }, "published": "2023-11-23T15:15:10.583", "references": [ { "source": "iletisim@usom.gov.tr", "tags": [ "Third Party Advisory" ], "url": "https://www.usom.gov.tr/bildirim/tr-23-0658" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "https://www.usom.gov.tr/bildirim/tr-23-0658" } ], "sourceIdentifier": "iletisim@usom.gov.tr", "vulnStatus": "Modified", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-25" } ], "source": "iletisim@usom.gov.tr", "type": "Secondary" }, { "description": [ { "lang": "en", "value": "CWE-22" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
CVE-2023-6118 (GCVE-0-2023-6118)
Vulnerability from cvelistv5
Published
2023-11-23 14:24
Modified
2024-12-02 19:38
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- CWE-25 - Path Traversal: '/../filedir'
Summary
Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.
References
► | URL | Tags | |||
---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-02T08:21:17.776Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "government-resource", "x_transferred" ], "url": "https://www.usom.gov.tr/bildirim/tr-23-0658" } ], "title": "CVE Program Container" }, { "metrics": [ { "other": { "content": { "id": "CVE-2023-6118", "options": [ { "Exploitation": "none" }, { "Automatable": "yes" }, { "Technical Impact": "partial" } ], "role": "CISA Coordinator", "timestamp": "2023-12-05T15:43:27.260445Z", "version": "2.0.3" }, "type": "ssvc" } } ], "providerMetadata": { "dateUpdated": "2024-12-02T19:38:10.447Z", "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP" }, "title": "CISA ADP Vulnrichment" } ], "cna": { "affected": [ { "defaultStatus": "unaffected", "product": "IP Camera", "vendor": "Neutron", "versions": [ { "lessThan": "b1130.1.0.1", "status": "affected", "version": "0", "versionType": "custom" } ] } ], "credits": [ { "lang": "en", "type": "finder", "user": "00000000-0000-4000-9000-000000000000", "value": "Cemil Sefa OZCAN" }, { "lang": "en", "type": "coordinator", "user": "00000000-0000-4000-9000-000000000000", "value": "Omer YILMAZ" }, { "lang": "en", "type": "analyst", "user": "00000000-0000-4000-9000-000000000000", "value": "Efe OZEL" }, { "lang": "en", "type": "sponsor", "user": "00000000-0000-4000-9000-000000000000", "value": "fordefence.com" } ], "descriptions": [ { "lang": "en", "supportingMedia": [ { "base64": false, "type": "text/html", "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.\u003cp\u003eThis issue affects IP Camera: before b1130.1.0.1.\u003c/p\u003e" } ], "value": "Path Traversal: \u0027/../filedir\u0027 vulnerability in Neutron IP Camera allows Absolute Path Traversal.This issue affects IP Camera: before b1130.1.0.1.\n\n" } ], "impacts": [ { "capecId": "CAPEC-597", "descriptions": [ { "lang": "en", "value": "CAPEC-597 Absolute Path Traversal" } ] } ], "metrics": [ { "cvssV3_1": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "NONE", "baseScore": 7.5, "baseSeverity": "HIGH", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "version": "3.1" }, "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ] } ], "problemTypes": [ { "descriptions": [ { "cweId": "CWE-25", "description": "CWE-25 Path Traversal: \u0027/../filedir\u0027", "lang": "en", "type": "CWE" } ] } ], "providerMetadata": { "dateUpdated": "2023-11-24T07:44:36.259Z", "orgId": "ca940d4e-fea4-4aa2-9a58-591a58b1ce21", "shortName": "TR-CERT" }, "references": [ { "tags": [ "government-resource" ], "url": "https://www.usom.gov.tr/bildirim/tr-23-0658" } ], "source": { "advisory": "TR-23-0658", "defect": [ "TR-23-0658" ], "discovery": "UNKNOWN" }, "title": "Path Traversal in Neutron IP Camera", "x_generator": { "engine": "Vulnogram 0.1.0-dev" } } }, "cveMetadata": { "assignerOrgId": "ca940d4e-fea4-4aa2-9a58-591a58b1ce21", "assignerShortName": "TR-CERT", "cveId": "CVE-2023-6118", "datePublished": "2023-11-23T14:24:24.001Z", "dateReserved": "2023-11-14T07:38:37.052Z", "dateUpdated": "2024-12-02T19:38:10.447Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }