CVE-2024-32753
Under certain circumstances the camera may be susceptible to known vulnerabilities associated with the JQuery versions prior to 3.5.0 third-party component
Scoring
- Severity
- HIGH
- CVSS base score
- 7
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:H/VI:L/VA:N/SC:H/SI:L/SA:N
- EPSS probability
- 0.40%
- CWE
- CWE-1395
- Published
- 2024-07-11
- Last modified
- 2026-03-13
Affected products
- Johnson Controls TYCO Illustra Pro4 Fixed cameras
- Johnson Controls TYCO Illustra Pro4 PTZ cameras
- Johnson Controls TYCO Illustra Flex4 Fixed & PTZ cameras
- Johnson Controls TYCO Illustra Pro4 MultiSensor Cameras
- Johnson Controls TYCO Illustra Flex4 DualSensor Cameras
Weakness type
Related vulnerabilities
- CVE-2026-69713 — Windows Secure Boot Security Feature Bypass Vulnerability
- CVE-2026-58235 — Use of Vulnerable Third-Party Component in SAP NetWeaver AS Java (Adobe Document Services)
- CVE-2026-58586 — Image::WebP versions before 0.3.0 for Perl bundle a vulnerable version of libwebp
- CVE-2026-16634 — TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99
- CVE-2026-55789 — Logto: SAML IdP injects user-controlled profile attributes raw into signed assertions, allowing privilege escalation at relying Service Providers
- CVE-2026-47906 — Dreamweaver Desktop | Dependency on Vulnerable Third-Party Component (CWE-1395)
- CVE-2026-8993 — Improper URL Handler Processing in D.Launcher 2 enables NTLM Credential Disclosure and SSRF attacks
- CVE-2025-31973 — HCL BigFix Service Management (SM) is susceptible to a Configuration – 'Insecure Use of Base Image Version'