Resolved vulnerabilities in Security Center 5.13.0.0 - The following security-related issues are resolved in Security Center 5.13.0.0. - Security Center 5.13

Security Updates for Security Center 5.13

Product
Security Center
Content type
Security updates
Version
5.13
ft:locale
en-US
Last updated
2025-01-29

The following security-related issues are resolved in Security Center 5.13.0.0.

Highest severity of resolved issues: High

Solution/Unit Issue Severity Description
Access 3963268 Major In Config Tool, an information disclosure issue in some access control appliances was fixed.
All 4082855 Medium After syncing a federation, federated cameras aren’t available for a federated user that no longer has access to the camera partition.
Video 4011878, 3922850 Medium OpenSSL was updated from version 3.3.0 to 3.3.2, which addresses the following medium vulnerabilities:
  • CVE-2024-5535
  • CVE-2024-6119
  • CVE-2024-4603
  • CVE-2024-4741
Video 3869872 Medium If you use the Hardware Inventory or Automation tasks to update a unit certificate and the unit requests a certificate with an IP or Hostname that it doesn’t own, the Unit Assistant role prevents a signed certificate from being generated.
Video 3805472 Medium In Omnicast™ federations, passwords no longer appear as plain text in the Directory database.
Video 3777627 Medium After an Archiver restart, the Use HTTPS setting for Bosch legacy cameras is kept even if it’s different than the default setting configured on the Archiver Extensions page.
Video 3771434, 3776493 Medium The opencv_core460.dll was updated to opencv_core490.dll to address the following medium vulnerabilities:
  • CVE-2023-2617
  • CVE-2023-2618
  • CVE-2022-37434
  • CVE-2023-45853