In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.
Metrics
Affected Vendors & Products
References
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published: 2021-10-07T16:15:14
Updated: 2024-08-04T03:22:25.941Z
Reserved: 2021-10-07T00:00:00
Link: CVE-2021-42071
No data.
Status : Modified
Published: 2021-10-07T17:15:08.453
Modified: 2024-11-21T06:27:11.257
Link: CVE-2021-42071
No data.