CVE-2024-13985 | Zhejiang Dahua EIMS prior 2240008 capture_handle.action captureCommand os command injection
A vulnerability described as critical has been identified in Zhejiang Dahua EIMS. Affected by this vulnerability is an unknown functionality of the file capture_handle.action. Such manipulation of the argument captureCommand leads to os command injection. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is uniquely identified as CVE-2024-13985. The attack can be launched remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.
Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.