CVE-2018-7829
8.8
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
An Improper Neutralization of Special Elements in Query vulnerability exists in the 1st Gen. Pelco Sarix Enhanced Camera and Spectra Enhanced PTZ Camera which allows an attacker to execute arbitrary system commands.
Affected (59)
Products: Schneider Electric: D6220 Firmware, D6220l Firmware, D6230 Firmware, D6230l Firmware, Imes19 1i Firmware, Imes19 1s Firmware, Imes19 1p Firmware, Ime119 1i Firmware, Ime119 1s Firmware, Ime119 1p Firmware, Ime219 1i Firmware, Ime219 1s Firmware, Ime219 1p Firmware, Ime319 1i Firmware, Ime319 1s Firmware, Ime319 1p Firmware, Ime319 B1i Firmware, Ime319 B1s Firmware, Ime319 B1p Firmware, Ime3122 1i Firmware, Ime3122 B1i Firmware, Ime3122 1s Firmware, Ime3122 B1s Firmware, Ime3122 1p Firmware, Ime3122 B1p Firmware, Imes19 1ei Firmware, Imes19 1es Firmware, Imes19 1ep Firmware, Ime119 1ei Firmware, Ime119 1es Firmware, Ime119 1ep Firmware, Ime219 1ei Firmware, Ime219 1es Firmware, Ime219 1ep Firmware, Ime319 1ei Firmware, Ime319 1es Firmware, Ime319 1ep Firmware, Ime3122 1ei Firmware, Ime3122 1es Firmware, Ime3122 1ep Firmware, Imes19 1vi Firmware, Imes19 1vs Firmware, Imes19 1vp Firmware, Ime119 1vi Firmware, Ime119 1vs Firmware, Ime119 1vp Firmware, Ime219 1vi Firmware, Ime219 1vs Firmware, Ime219 1vp Firmware, Ime319 1vi Firmware, Ime319 1vs Firmware, Ime319 1vp Firmware, Ime3122 1vi Firmware, Ime3122 1vs Firmware, Ime3122 1vp Firmware, Ixes1 Firmware, Ixe11 Firmware, Ixe21 Firmware, Ixe31 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 2.11 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric D6220 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| From 2.11 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric D6220l | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| From 2.11 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric D6230 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| From 2.11 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric D6230l | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1i | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1s | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1p | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1i | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1s | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1p | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1i | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1s | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1p | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1i | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1s | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1p | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 B1i | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 B1s | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 B1p | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1i | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 B1i | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1s | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 B1s | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1p | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 B1p | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1ei | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1es | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1ep | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1ei | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1es | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1ep | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1ei | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1es | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1ep | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1ei | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1es | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1ep | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1ei | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1es | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1ep | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1vi | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1vs | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Imes19 1vp | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1vi | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1vs | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime119 1vp | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1vi | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1vs | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime219 1vp | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1vi | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1vs | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime319 1vp | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1vi | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1vs | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ime3122 1vp | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ixes1 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ixe11 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ixe21 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.3.0 |
| Running on/with | Platform Versions |
|---|---|
Schneider Electric Ixe31 | All versions |
References (2)
Source: cybersecurity@se.com
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory
Timeline
No history available yet.