Filtered by vendor Huijietong Subscriptions
Filtered by product Cloud Video Platform Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-13991 1 Huijietong 1 Cloud Video Platform 2025-10-21 N/A
Huijietong Cloud Video Platform contains a path traversal vulnerability that allows an unauthenticated attacker can supply arbitrary file paths to the `fullPath` parameter of the `/fileDownload?action=downloadBackupFile` endpoint and retrieve files from the server filesystem. VulnCheck has observed this vulnerability being targeted by the RondoDox botnet campaign.