Davantis DDFUSION Inadequate Access Control Vulnerability Allowing Unauthorized Retrieval of Camera Perspective Parameters
Vulnerability
An access control vulnerability has been identified in Davantis DDFUSION version 6.177.7. This vulnerability allows unauthorized individuals to access perspective parameters from security camera settings by navigating to a specific endpoint related to the camera ID. The issue arises from inadequate access controls that fail to prevent unauthorized access to sensitive camera configuration data.
Impact
Exploitation of this vulnerability could lead to unauthorized access to camera perspective parameters, potentially allowing for manipulation or misuse of camera settings.
Remediation
Users can upgrade to Davantis DDFUSION version 6.186.1 or later to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
