Vulnerability Details CVE-2022-37681
Hitachi Kokusai Electric Newtork products for monitoring system (Camera, Decoder and Encoder) and below allows attckers to perform a directory traversal via a crafted GET request to the endpoint /ptippage.cgi. Security information ID hitachi-sec-2022-001 contains fixes for the issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.6%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-37681
-
cpe:2.3:h:hitachi:hc-ip9100hd:-
-
cpe:2.3:o:hitachi:hc-ip9100hd_firmware:-
-
cpe:2.3:o:hitachi:hc-ip9100hd_firmware:1.07