9.8
CVSSv3

CVE-2023-51126

Published: 10/01/2024 Updated: 17/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16 allows malicious users to run arbitrary commands via the value parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

flir flir_ax8_firmware

Github Repositories

CVE-2023-51126 FLIR AX8 up to 14616 is vulnerable to command injection via /usr/www/resphp VulnerabilityType Other command injection Vendor of Product FLIR Affected Component in /usr/www/resphp The parameter value can inject the command and exec it Attack Type Remote Impact Code execution true Reference aux1prediteccom/ Discoverer Lin Xinkang from Wuhan Univers