CVE-2024-3160

5.3 MEDIUM
Published: April 02, 2024 Modified: April 15, 2026
View on NVD

Description

** DISPUTED ** A vulnerability, which was classified as problematic, was found in Intelbras MHDX 1004, MHDX 1008, MHDX 1016, MHDX 5016, HDCVI 1008 and HDCVI 1016 up to 20240401. This affects an unknown part of the file /cap.js of the component HTTP GET Request Handler. The manipulation leads to information disclosure. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The real existence of this vulnerability is still doubted at the moment. The identifier VDB-258933 was assigned to this vulnerability. NOTE: The vendor explains that they do not classify the information shown as sensitive and therefore there is no vulnerability which is about to harm the user.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
https://vuldb.com/?ctiid.258933
Source: cna@vuldb.com
https://vuldb.com/?id.258933
Source: cna@vuldb.com
https://github.com/netsecfish/intelbras_cap_js
Source: af854a3a-2127-422b-91ae-364da2661108
https://vuldb.com/?ctiid.258933
Source: af854a3a-2127-422b-91ae-364da2661108
https://vuldb.com/?id.258933
Source: af854a3a-2127-422b-91ae-364da2661108
https://vuldb.com/?submit.305410
Source: af854a3a-2127-422b-91ae-364da2661108

8 reference(s) from NVD

Quick Stats

CVSS v3 Score
5.3 / 10.0
EPSS (Exploit Probability)
0.1%
29th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)