CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. Exploitation may require the attacker to be authenticated.
CVE
CVE-2020-24216
Severity
HIGH
CVSS
7.5
EPSS
2.11%
Original NVD Description
An issue was discovered in the box application on HiSilicon based IPTV/H.264/H.265 video encoders. When the administrator configures a secret URL for RTSP streaming, the stream is still available via its default name such as /0. Unauthenticated attackers can view video streams that are meant to be private.
Related CVEs
Other vulnerabilities affecting the same vendor(s)