Selea Targa IP OCR-ANPR Camera contains an unauthenticated command injection vulnerability in utils.php that allows remote attackers to execute arbitrary shell commands. Attackers can exploit the 'addr' and 'port' parameters to inject commands and gain www-data user access through chained local file inclusion techniques.
Metrics
Affected Vendors & Products
References
History
Tue, 09 Dec 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Selea Targa IP OCR-ANPR Camera contains an unauthenticated command injection vulnerability in utils.php that allows remote attackers to execute arbitrary shell commands. Attackers can exploit the 'addr' and 'port' parameters to inject commands and gain www-data user access through chained local file inclusion techniques. | |
| Title | Selea Targa IP Camera Remote Code Execution via Utils | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2025-12-09T20:44:20.450Z
Updated: 2025-12-09T20:44:20.450Z
Reserved: 2025-12-07T20:10:09.804Z
Link: CVE-2021-47728
No data.
Status : Received
Published: 2025-12-09T21:15:51.243
Modified: 2025-12-09T21:15:51.243
Link: CVE-2021-47728
No data.