TROYANOSYVIRUS
Back to CVEs

CVE-2024-36523

MEDIUM
6.5

Description

An access control issue in Wvp GB28181 Pro 2.0 allows users to continue to access information in the application after deleting their own or administrator accounts. This is provided that the users do not log out of their deleted accounts.

CVE Details

CVSS v3.1 Score6.5
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published6/12/2024
Last Modified6/13/2025
Sourcenvd
Honeypot Sightings0

Affected Products

wvp-pro:gb28181

Weaknesses (CWE)

CWE-613

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.