Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-32530

OS command injection vulnerability in Array function in QSAN XEVO allows remote unauthenticated attackers to execute arbitrary commands via status parameter. The referred vulnerability has been solved with the updated version of QSAN XEVO v2.1.0.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2021-32530
  • Qsan » Xevo » Version: N/A
    cpe:2.3:a:qsan:xevo:-
  • Qsan » Xevo » Version: 1.2.0
    cpe:2.3:a:qsan:xevo:1.2.0


Contact Us

Shodan ® - All rights reserved