CVE-2022-30620: Cellinx Nvt - IP Ptz Camera Firmware

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.

Affected products

  • Cellinx Cellinx Nvt - IP Ptz Camera Firmware: version 3.2.0 only; version 3.2.1 only

Published 2022-07-18. Last modified 2026-06-17.