risuxx / CVE-2023-51126

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

CVE-2023-51126

FLIR AX8 up to 1.46.16 is vulnerable to command injection via /usr/www/res.php.

VulnerabilityType Other

command injection

Vendor of Product

FLIR

Affected Component

in /usr/www/res.php. The parameter value can inject the command and exec it.

Attack Type

Remote

Impact Code execution

true

Reference

https://aux1.preditec.com/

Discoverer

Lin Xinkang from Wuhan University

This page will be used to disclose information about CVE-2023-51126, and may be updated with the PoC for the exploit later.

About