CVE-2021-47729
MEDIUMDescription
Selea Targa IP OCR-ANPR Camera contains a stored cross-site scripting vulnerability in the 'files_list' parameter that allows attackers to inject malicious HTML and script code. Attackers can send a POST request to /cgi-bin/get_file.php with crafted payload to execute arbitrary scripts in victim's browser session.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| selea | izero_box_full_firmware |
| selea | izero_box_full |
| selea | izero_column_entry\/8_firmware |
| selea | izero_column_entry\/8 |
| selea | izero_column_full\/8_firmware |
| selea | izero_column_full\/8 |
| selea | targa_504_firmware |
| selea | targa_504 |
| selea | targa_512_firmware |
| selea | targa_512 |
| selea | targa_704_ilb_firmware |
| selea | targa_704_ilb |
| selea | targa_704_tkm_firmware |
| selea | targa_704_tkm |
| selea | targa_710_inox_firmware |
| selea | targa_710_inox |
| selea | targa_750_firmware |
| selea | targa_750 |
| selea | targa_805_firmware |
| selea | targa_805 |
| selea | targa_semplice_firmware |
| selea | targa_semplice |
| selea | carplateserver |
| selea | carplateserver |
| selea | carplateserver |
| selea | carplateserver |
References
Frequently Asked Questions
What is CVE-2021-47729? +
How severe is CVE-2021-47729? +
What products are affected by CVE-2021-47729? +
How do I check if I'm vulnerable to CVE-2021-47729? +
Related Vulnerabilities
WeGIA is a web manager for charitable institutions. In versions prior to 3.6.10, a Stored Cross-Site Scripting (XSS) vulnerability allows …
Reflected Cross-Site Scripting (XSS) vulnerability in Navigate Content Management System. The vulnerability is present in the '/blog' endpoint because user …
Cross-Site Scripting (XSS) vulnerability reflected in Semantic MediaWiki. This vulnerability allows an attacker to execute JavaScript code in the victim's …
Bludit CMS prior to commit 6732dde contains a reflected cross-site scripting vulnerability in the search plugin that allows unauthenticated attackers …
mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, the admin dashboard's Autodiscover …
mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, the mailcow web interface …