7.5
CVSSv3

CVE-2023-27055

Published: 24/03/2023 Updated: 30/03/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Aver Information Inc PTZApp2 v20.01044.48 allows malicious users to access sensitive files via a crafted GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

aver ptzapp 2

Github Repositories

CVE-2023-27055 Aver Information Inc PTZApp2 Directory Traversal to LFI Vulnerability Description: PTZApp2 is a free application that is used to control AVER USB cameras This software creates a web application on the localhost that users of the software can use to manage and control connected USB PTZ cameras Impact: By sending a crafted GET request to the web based applicatio