Unrated severityNVD Advisory· Published Dec 9, 2025· Updated Apr 7, 2026
Selea Targa IP Camera Stored Cross-Site Scripting via Files List
CVE-2021-47729
Description
Selea Targa IP OCR-ANPR Camera contains a stored cross-site scripting vulnerability in the 'files_list' parameter that allows attackers to inject malicious HTML and script code. Attackers can send a POST request to /cgi-bin/get_file.php with crafted payload to execute arbitrary scripts in victim's browser session.
Affected products
1- Range: Model: iZero
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.exploit-db.com/exploits/49454mitreexploit
- www.vulncheck.com/advisories/selea-targa-ip-camera-stored-cross-site-scripting-via-files-listmitrethird-party-advisory
- www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5614.phpmitrethird-party-advisory
- www.selea.commitreproduct
- www.selea.com/product/mitreproduct
News mentions
0No linked articles in our index yet.