Vulnerability Details CVE-2021-42071
In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.93
EPSS Ranking 99.8%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2021-42071
-
cpe:2.3:h:visual-tools:dvr_vx16:-
-
cpe:2.3:o:visual-tools:dvr_vx16_firmware:4.2.28.0