CVE-2025-6266 | Teledyne FLIR AX8 up to 1.46 /upload.php File unrestricted upload
A vulnerability was found in Teledyne FLIR AX8 up to 1.46. It has been classified as critical. Affected by this vulnerability is an unknown functionality of the file /upload.php. Performing manipulation of the argument File results in unrestricted upload.
This vulnerability is cataloged as CVE-2025-6266. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Upgrading the affected component is recommended.
The vendor points out: "FLIR AX8 internal web site has been refactored to be able to handle the reported vulnerabilities."