cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-37680,https://securityvulnerability.io/vulnerability/CVE-2022-37680,Improper Authentication Vulnerability in Hitachi Kokusai Electric Network Monitoring Products,"An improper authentication issue in Hitachi Kokusai Electric Network products enables attackers to exploit critical functions. By sending specially crafted POST requests to the /ptipupgrade.cgi endpoint, malicious actors can remotely reboot affected devices, causing potential disruptions in monitoring and operations. Affected products include various models of cameras, decoders, and encoders used in surveillance systems. Security update provided in the advisory 'hitachi-sec-2022-001' addresses this vulnerability.",Hitachi,Hc-ip9100hd Firmware,7.5,HIGH,0.0010100000072270632,false,,false,false,false,,,false,false,,2022-08-29T23:15:00.000Z,0 CVE-2022-37681,https://securityvulnerability.io/vulnerability/CVE-2022-37681,Directory Traversal Vulnerability in Hitachi Kokusai Electric Network Monitoring Products,"A directory traversal vulnerability exists in Hitachi Kokusai Electric's network monitoring products, including Cameras, Decoders, and Encoders. Attackers can exploit this vulnerability to access restricted directories by crafting a malicious GET request directed at the endpoint /ptippage.cgi. This could potentially lead to unauthorized access to sensitive system files. A security advisory (hitachi-sec-2022-001) has been issued, providing guidance on the necessary patches to mitigate the risks associated with this vulnerability.",Hitachi,Hc-ip9100hd Firmware,7.5,HIGH,0.0016199999954551458,false,,false,false,false,,,false,false,,2022-08-29T23:15:00.000Z,0