Critical severity9.8NVD Advisory· Published Jun 23, 2025· Updated Jun 17, 2026
CVE-2023-48978
CVE-2023-48978
Description
An issue in NCR ITM Web terminal v.4.4.0 and v.4.4.4 allows a remote attacker to execute arbitrary code via a crafted script to the IP camera URL component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- NCR/ITM Web terminaldescription
4.4.0, 4.4.4+ 2 more
- (no CPE)range: 4.4.0, 4.4.4
- cpe:2.3:a:ncr:itm_web_terminal:4.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:ncr:itm_web_terminal:4.4.4:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/pwahba/cve-research/blob/main/CVE-2023-48978/CVE-2023-48978.mdnvdThird Party Advisory
- drive.google.com/file/d/13JrkDcVtcQFepeGoG8roBZ1xFy7iBx1R/viewnvdPermissions Required
News mentions
0No linked articles in our index yet.