Cellinx develops a narrowly focused line of IP-based PTZ (pan-tilt-zoom) camera products and associated web server infrastructure for surveillance and monitoring applications. The observed vulnerability signal concentrates in information-disclosure and access-control weaknesses, including sensitive-data exposure, path-traversal conditions, and improper session validation, which are typical of web-interfaced embedded devices; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cellinx over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-23063HIGH Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFileContent.cgi. | Feb 22, 2023 | 7.5 | 34 | NO | YES |
CVE-2020-28250CRITICAL Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side. | Nov 6, 2020 | 9.8 | 29 | NO | NO |
CVE-2022-30620HIGH On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admi | Jul 18, 2022 | 8.8 | 27 | NO | NO |
CVE-2022-30621MEDIUM Allows a remote user to read files on the camera's OS "GetFileContent.cgi". Reading arbitrary files on the camera's OS as root user. | Jul 18, 2022 | 6.5 | 22 | NO | NO |
CVE-2024-24215MEDIUM An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configuration information via a crafted POST request. | Feb 8, 2024 | 5.3 | 16 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cellinx.
Media articles that mention a CVE ID that affects a product developed by Cellinx — matched by CVE ID, not by vendor name.