Non-sanitized user input could lead to arbitrary code execution during Access Control configuration in AXIS License Plate Verifier
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.2epss 0.8%
exploitation probability
0.8%top 46% of all CVEs
observed exploitation
nono source reports it
User provided input is not sanitized in the “Settings > Access Control” configuration interface allowing for
arbitrary code execution.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
Axis Communications AB · AXIS License Plate Verifier