Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Brivo ACS100, ACS300 allows OS Command Injection, Bypassing Physical Security.This issue affects ACS100 (Network Adjacent Access), ACS300 (Physical Access): from 5.2.4 before 6.2.4.3.
History

Wed, 05 Feb 2025 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Brivo
Brivo acs100
Brivo acs100 Firmware
Brivo acs300
Brivo acs300 Firmware
CPEs cpe:2.3:h:brivo:acs100:-:*:*:*:*:*:*:*
cpe:2.3:h:brivo:acs300:-:*:*:*:*:*:*:*
cpe:2.3:o:brivo:acs100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:brivo:acs300_firmware:*:*:*:*:*:*:*:*
Vendors & Products Brivo
Brivo acs100
Brivo acs100 Firmware
Brivo acs300
Brivo acs300 Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: SRA

Published: 2024-02-19T21:30:20.947Z

Updated: 2024-08-02T08:28:20.371Z

Reserved: 2023-11-22T17:16:37.736Z

Link: CVE-2023-6260

cve-icon Vulnrichment

Updated: 2024-08-02T08:28:20.371Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-19T22:15:48.460

Modified: 2025-02-05T22:35:57.283

Link: CVE-2023-6260

cve-icon Redhat

No data.