A Command Injection vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via the system.ntp parameter to the farseer.out binary file, which cold let a malicious user execute arbitrary code.
2020-01-24T19:15:11.933
2024-11-21T01:49:57.827
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:C/I:C/A:C
8.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | vivotek | pt7135_firmware | 0300a | Yes |
Operating System | vivotek | pt7135_firmware | 0400a | Yes |
Hardware | vivotek | pt7135 | - | No |