Vulnerability Details CVE-2023-51126
Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16 allows attackers to run arbitrary commands via the value parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.245
EPSS Ranking 95.9%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-51126
-
cpe:2.3:h:flir:flir_ax8:-
-
cpe:2.3:o:flir:flir_ax8_firmware:-
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.0
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.1
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.10
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.11
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.12
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.13
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.14
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.15
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.16
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.2
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.3
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.4
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.5
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.6
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.7
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.8
-
cpe:2.3:o:flir:flir_ax8_firmware:1.46.9