CVE Feed

    Dashboard / CVE / CVE-2024-36523

    CVE-2024-36523

    An access control issue in Wvp GB28181 Pro 2.0 allows users to continue to access information in the application after deleting their own or administrator accounts. This is provided that the users do not log out of their deleted accounts.

    Published:Jun 12, 2024
    Last Modified:Jun 13, 2025
    EPS:Jun 12, 2024
    EPSS Score:0.00086
    CVSS Score:6.5

    Affected Products

    Vendor
    Wvp-pro
    Product
    Gb28181

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High