Vulnerabilities > Visual Tools

DATE CVE VULNERABILITY TITLE RISK
2021-10-07 CVE-2021-42071 OS Command Injection vulnerability in Visual-Tools DVR Vx16 Firmware 4.2.28.0
In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.
network
low complexity
visual-tools CWE-78
critical
9.8