OCTOBER 3, 2026
Live Feed
Back to database
Case File

CVE-2020-24216

HIGH · CVSS 7.5 EPSS 2.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-10-06 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. Exploitation may require the attacker to be authenticated.

CVE
CVE-2020-24216
Severity
HIGH
CVSS
7.5
EPSS
2.11%

Original NVD Description

An issue was discovered in the box application on HiSilicon based IPTV/H.264/H.265 video encoders. When the administrator configures a secret URL for RTSP streaming, the stream is still available via its default name such as /0. Unauthenticated attackers can view video streams that are meant to be private.

Related CVEs

Other vulnerabilities affecting the same vendor(s)