VYPR
Vendor

VITEC Exterity

Products
13
CVEs
4
Across products
14
Status
Private

Products

13

Recent CVEs

4
  • CVE-2026-61498CriJul 13, 2026
    risk 0.64cvss 9.8epss 0.04

    Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/gen_graphs.php endpoint that allows remote unauthenticated attackers to execute arbitrary commands by supplying shell metacharacters in the start, end, key, or format HTTP GET…

  • CVE-2026-60121CriJul 13, 2026
    risk 0.64cvss 9.8epss 0.02

    Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/ping.php endpoint that allows remote attackers to execute arbitrary commands by exploiting a double-evaluation flaw in shell argument handling. The endpoint applies…

  • CVE-2021-42109CriOct 8, 2021
    risk 0.64cvss 9.8epss 0.02

    VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.

  • CVE-2024-35102HigMay 15, 2024
    risk 0.57cvss 8.8epss 0.01

    Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script.