SystemK.NVR.504.Command.Injection
Description
This indicates an attack attempt to exploit a Command Injection Vulnerability in SystemK NVR 504/508/516.
The vulnerability is due to insufficient validation of user-supplied inputs. A remote, authenticated attacker could exploit this vulnerability by sending a malicious request to the target server. Successful exploitation can lead to arbitrary command execution.
Affected Products
SystemK NVR 504/508/516 versions 2.3.5SK.30084998 and prior
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Currently we are unaware of any vendor supplied patch or updates available for this issue.
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |