Metrics
Affected Vendors & Products
Wed, 15 Oct 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-707 |
Wed, 15 Oct 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical has been found in Teledyne FLIR AX8 up to 1.46.16. Affected is an unknown function of the file palette.php of the component Web Service Handler. The manipulation of the argument palette leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-215118 is the identifier assigned to this vulnerability. | A vulnerability has been found in Teledyne FLIR AX8 up to 1.46.16. Affected by this issue is some unknown functionality of the file palette.php of the component Web Service Handler. The manipulation of the argument palette leads to command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.49.16 can resolve this issue. Upgrading the affected component is advised. The vendor points out: "FLIR AX8 internal web site has been refactored to be able to handle the reported vulnerabilities." |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
| |
| Metrics |
cvssV3_1
|
cvssV2_0
|
Mon, 14 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: VulDB
Published: 2022-12-08T00:00:00.000Z
Updated: 2025-10-15T13:18:53.461Z
Reserved: 2022-12-08T00:00:00.000Z
Link: CVE-2022-4364
Updated: 2024-08-03T01:34:50.195Z
Status : Modified
Published: 2022-12-08T15:15:10.080
Modified: 2025-10-15T14:15:37.370
Link: CVE-2022-4364
No data.