8.8
CVSSv3

CVE-2022-31208

Published: 17/07/2022 Updated: 25/07/2022
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

An issue exists in Infiray IRAY-A8Z3 1.0.957. The webserver contains an endpoint that can execute arbitrary commands by manipulating the cmd_string URL parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

infiray iray-a8z3_firmware 1.0.957

Exploits

Infiray IRAY-A8Z3 thermal camera version 10957 suffers from hardcoded web credential, authenticated remote code execution, buffer overflow, lack of password for root, and outdated software component vulnerabilities ...