CVE-2017-20215
FLIR Thermal Camera FC-S/PT firmware version 8.0.0.64 Authenticated OS Command Injection
Vexday Risk Score
26Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.7EPSS 14.0%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
07 Jan 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
FLIR Thermal Camera FC-S/PT firmware version 8.0.0.64 contains an authenticated OS command injection vulnerability that allows attackers to execute shell commands with root privileges. Authenticated attackers can inject arbitrary shell commands through unvalidated input parameters to gain complete control of the thermal camera system.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
FLIR Systems, Inc. · FLIR Thermal Camera FC-S/PTWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →