Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-45984 | Wowza Streaming Engine below 4.9.1 permits an authenticated Streaming Engine Manager administrator to define a custom application property and poison a stream target for high-privilege remote code execution. |
Fri, 22 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wowza
Wowza streaming Engine |
|
| CPEs | cpe:2.3:a:wowza:streaming_engine:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wowza
Wowza streaming Engine |
|
| Metrics |
ssvc
|
Thu, 21 Nov 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Wowza Streaming Engine below 4.9.1 permits an authenticated Streaming Engine Manager administrator to define a custom application property and poison a stream target for high-privilege remote code execution. | |
| Title | Stream Target Remote Code Execution in Wowza Streaming Engine | |
| Weaknesses | CWE-646 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2024-11-22T16:11:48.554Z
Reserved: 2024-11-05T16:58:15.300Z
Link: CVE-2024-52052
Updated: 2024-11-22T16:11:43.430Z
Status : Received
Published: 2024-11-21T23:15:04.520
Modified: 2024-11-21T23:15:04.520
Link: CVE-2024-52052
No data.
OpenCVE Enrichment
No data.
EUVD