A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow an unauthorized user to view device information, alter firmware content and device configuration. This vulnerability is the same as CNVD-2020-68651.
Solution:
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
https://iknow.lenovo.com.cn/detail/dc_198417.html | vendor advisory |
https://www.cnvd.org.cn/flaw/show/CNVD-2020-68651 | not applicable |