First published: Thu Aug 03 2023(Updated: )
User provided input is not sanitized on the AXIS License Plate Verifier specific “search.cgi” allowing for SQL injections.
Credit: product-security@axis.com product-security@axis.com
Affected Software | Affected Version | How to fix |
---|---|---|
AXIS License Plate Verifier | <=2.8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-21412 is a vulnerability where user provided input is not sanitized on the AXIS License Plate Verifier specific “search.cgi” allowing for SQL injections.
The severity of CVE-2023-21412 is high with a severity value of 8.8.
The AXIS License Plate Verifier with a version up to and including 2.8.3 is affected by CVE-2023-21412.
CVE-2023-21412 can be exploited by performing SQL injections through the user provided input on the AXIS License Plate Verifier specific “search.cgi”.
Yes, you can find more information about CVE-2023-21412 at the following link: [link](https://www.axis.com/dam/public/0b/1c/96/cve-2023-2140712-en-US-409778.pdf).