CVE-2024-54013: Authentication Bypass
Penetration Testing engineers at Amazon have identified a security flaw related to request handling in the web server component that could, under certain conditions, lead to unintended access to protected functions. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-54013?
CVE-2024-54013 has a high severity score of 8.7 according to CVSS.
How do I fix CVE-2024-54013?
To fix CVE-2024-54013, users should apply the patch firmware released by the manufacturer for affected HanwhaVision products.
What type of vulnerability is CVE-2024-54013?
CVE-2024-54013 is an authentication bypass vulnerability that allows unintended access to protected functions.
Which devices are affected by CVE-2024-54013?
Affected devices include various HanwhaVision camera firmware models such as Knb-2000, Knd-2010, and Xnv-l6080.
What could happen if CVE-2024-54013 is exploited?
If exploited, CVE-2024-54013 could allow unauthorized users to gain access to protected functionalities of the web server.