HIGH · 9.0

CVE-2015-1469

time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP re...

Vulnerability Description

time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.

CVSS Score

9.0

HIGH

AV:N/AC:L/Au:S/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
ServisionHvg Video Gateway Firmware<= 2.2.26a100
ServisionHvg400All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-1469?

CVE-2015-1469 is a vulnerability with a CVSS score of 9.0 (HIGH). time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP re...

How severe is CVE-2015-1469?

CVE-2015-1469 has been rated HIGH with a CVSS base score of 9.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-1469?

Check the references section above for vendor advisories and patch information. Affected products include: Servision Hvg Video Gateway Firmware, Servision Hvg400.