Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 24 Dec 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | iSeeQ Hybrid DVR WH-H4 1.03R contains an unauthenticated vulnerability in the get_jpeg script that allows unauthorized access to live video streams. Attackers can retrieve video snapshots from specific camera channels by sending requests to the /cgi-bin/get_jpeg endpoint without authentication. | |
| Title | iSeeQ Hybrid DVR WH-H4 1.03R Unauthenticated Live Stream Disclosure | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-24T20:23:52.108Z
Reserved: 2025-12-24T14:27:12.475Z
Link: CVE-2019-25236
Updated: 2025-12-24T20:05:30.352Z
Status : Deferred
Published: 2025-12-24T20:15:51.223
Modified: 2026-04-15T00:35:42.020
Link: CVE-2019-25236
No data.
OpenCVE Enrichment
No data.