In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T03:22:25.941Z
Reserved: 2021-10-07T00:00:00
Link: CVE-2021-42071
No data.
Status : Modified
Published: 2021-10-07T17:15:08.453
Modified: 2024-11-21T06:27:11.257
Link: CVE-2021-42071
No data.
OpenCVE Enrichment
No data.
Weaknesses