Non-sanitized user input could lead to arbitrary code execution in AXIS License Plate Verifier
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.2epss 0.8%
exploitation probability
0.8%top 46% of all CVEs
observed exploitation
nono source reports it
User provided input is not sanitized on the AXIS License Plate Verifier specific “api.cgi” allowing for
arbitrary code execution.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
Axis Communications AB · AXIS License Plate Verifier