cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2018-7829,https://securityvulnerability.io/vulnerability/CVE-2018-7829,Improper Neutralization in Pelco Sarix and Spectra Cameras by Schneider Electric,"A vulnerability exists in 1st Generation Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ Camera, allowing attackers to execute arbitrary system commands. This flaw arises from inadequate neutralization of special elements, posing a significant risk to device security. Addressing this vulnerability is essential to safeguard against unauthorized access and manipulation.",Schneider Electric,"Pelco Sarix Enhanced And Spectra Enhanced, Pelco Sarix Enhanced 1st Generation And Spectra Enhanced Ptz",8.8,HIGH,0.001019999966956675,false,,false,false,false,,,false,false,,2019-05-22T19:35:13.000Z,0 CVE-2018-7828,https://securityvulnerability.io/vulnerability/CVE-2018-7828,Cross-Site Request Forgery Vulnerability in Pelco Sarix and Spectra Cameras,"A Cross-Site Request Forgery (CSRF) vulnerability can be exploited in the 1st Generation Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ Camera. When an authenticated user is logged into the camera's interface and clicks on a specially crafted malicious link, it may allow an attacker to issue unauthorized commands. This security risk emphasizes the importance of securing web applications against CSRF threats by implementing proper validation techniques.",Schneider Electric,"Pelco Sarix Enhanced And Spectra Enhanced, Pelco Sarix Enhanced 1st Generation And Spectra Enhanced Ptz",8.8,HIGH,0.0007300000288523734,false,,false,false,false,,,false,false,,2019-05-22T19:34:25.000Z,0 CVE-2018-7827,https://securityvulnerability.io/vulnerability/CVE-2018-7827,Cross-Site Scripting Vulnerability in Pelco Sarix and Spectra Cameras,"A Cross-Site Scripting (XSS) vulnerability exists in the Sarix Enhanced Camera and Spectra Enhanced PTZ Camera from Pelco, allowing remote attackers to inject arbitrary HTML and script code into a user's browser session. This flaw can lead to serious security implications, enabling attackers to manipulate user sessions and potentially access sensitive information.",Schneider Electric,"Pelco Sarix Enhanced And Spectra Enhanced, Pelco Sarix Enhanced 1st Generation And Spectra Enhanced Ptz",5.4,MEDIUM,0.0006600000197067857,false,,false,false,false,,,false,false,,2019-05-22T19:33:25.000Z,0 CVE-2018-7826,https://securityvulnerability.io/vulnerability/CVE-2018-7826,Command Injection Flaw in Pelco Sarix Enhanced Cameras,"The Pelco Sarix Enhanced Cameras have a vulnerability in their web-based graphical user interface that exposes them to command injection attacks. This flaw allows remote attackers to execute arbitrary commands on the camera, potentially compromising the security and functionality of the device. Proper security measures should be adopted to mitigate the risks associated with this vulnerability.",Schneider Electric,"Pelco Sarix Enhanced And Spectra Enhanced, Pelco Sarix Enhanced 1st Generation And Spectra Enhanced Ptz",8.8,HIGH,0.0010999999940395355,false,,false,false,false,,,false,false,,2019-05-22T19:33:00.000Z,0 CVE-2018-7825,https://securityvulnerability.io/vulnerability/CVE-2018-7825,Command Injection Vulnerability in Pelco Sarix Enhanced Camera,"A command injection vulnerability exists in the web-based graphical user interface of the 1st Gen Pelco Sarix Enhanced Camera. This flaw enables remote attackers to execute arbitrary commands on the underlying system, bypassing traditional authentication mechanisms. If exploited, an attacker could potentially manipulate the camera's settings or access sensitive data, posing significant risks to surveillance and security operations.",Schneider Electric,"Pelco Sarix Enhanced And Spectra Enhanced, Pelco Sarix Enhanced 1st Generation And Spectra Enhanced Ptz",8.8,HIGH,0.0010999999940395355,false,,false,false,false,,,false,false,,2019-05-22T19:32:25.000Z,0