CVE-2018-7233
CVE-2018-7233
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
09 Mar 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow execution of commands due to lack of validation of the shell meta characters with the value of 'model_name' or 'mac_address'.
Affected products
Schneider Electric SE · Pelco Sarix ProfessionalWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →