An issue in NCR ITM Web terminal v.4.4.0 and v.4.4.4 allows a remote attacker to execute arbitrary code via a crafted script to the IP camera URL component.
2025-06-23T15:15:26.890
2025-07-09T19:10:02.767
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ncr | itm_web_terminal | 4.4.0 | Yes |
Application | ncr | itm_web_terminal | 4.4.4 | Yes |