TROYANOSYVIRUS
Voltar para CVEs

CVE-2021-47731

CRITICAL
9.8

Descricao

Selea Targa IP OCR-ANPR Camera contains a hard-coded developer password vulnerability that allows unauthorized configuration access through an undocumented page. Attackers can exploit the hidden endpoint by using the hard-coded password 'Selea781830' to enable configuration upload and overwrite device settings.

Detalhes CVE

Pontuacao CVSS v3.19.8
SeveridadeCRITICAL
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosNONE
Interacao do usuarioNONE
Publicado12/9/2025
Ultima modificacao2/23/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

selea:carplateserverselea:izero_box_fullselea:izero_box_full_firmwareselea:izero_column_entry\/8selea:izero_column_entry\/8_firmwareselea:izero_column_full\/8selea:izero_column_full\/8_firmwareselea:targa_504selea:targa_504_firmwareselea:targa_512selea:targa_512_firmwareselea:targa_704_ilbselea:targa_704_ilb_firmwareselea:targa_704_tkmselea:targa_704_tkm_firmwareselea:targa_710_inoxselea:targa_710_inox_firmwareselea:targa_750selea:targa_750_firmwareselea:targa_805selea:targa_805_firmwareselea:targa_sempliceselea:targa_semplice_firmware

Fraquezas (CWE)

CWE-306

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.