Lucene search

K
cvelistMitreCVELIST:CVE-2022-38970
HistorySep 26, 2022 - 10:21 a.m.

CVE-2022-38970

2022-09-2610:21:58
mitre
www.cve.org
5
iegeek
ig20 hipcam
realserver
vulnerability
incorrect access control
shenzhen yunni technology ilnkp2p
predictability flaw
remote attackers
direct connections

AI Score

6.9

Confidence

High

EPSS

0.002

Percentile

57.5%

ieGeek IG20 hipcam RealServer V1.0 is vulnerable to Incorrect Access Control. The algorithm used to generate device IDs (UIDs) for devices that utilize Shenzhen Yunni Technology iLnkP2P suffers from a predictability flaw that allows remote attackers to establish direct connections to arbitrary devices.

AI Score

6.9

Confidence

High

EPSS

0.002

Percentile

57.5%

Related for CVELIST:CVE-2022-38970