CVE-2022-34540

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
19/07/2022
Last modified:
08/08/2023

Description

Digital Watchdog DW MEGApix IP cameras A7.2.2_20211029 was discovered to contain a command injection vulnerability in the component /admin/vca/license/license_tok.cgi. This vulnerability is exploitable via a crafted POST request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dw:megapix_firmware:4.2.0.32842:*:*:*:*:*:*:*
cpe:2.3:h:dw:megapix:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools