First published: Thu Aug 03 2023(Updated: )
User provided input is not sanitized in the “Settings > Access Control” configuration interface allowing for arbitrary code execution.
Credit: product-security@axis.com product-security@axis.com
Affected Software | Affected Version | How to fix |
---|---|---|
AXIS License Plate Verifier | <=2.8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-21411 is rated as high with a score of 8.8.
The affected software for CVE-2023-21411 is AXIS License Plate Verifier version up to and including 2.8.3.
CVE-2023-21411 allows for arbitrary code execution, posing a significant risk to system security.
To fix CVE-2023-21411, it is recommended to apply the latest security patch or upgrade to a patched version of AXIS License Plate Verifier.
More information about CVE-2023-21411 can be found at the following reference: [Axis Security Advisory](https://www.axis.com/dam/public/0b/1c/96/cve-2023-2140712-en-US-409778.pdf).