FLIR AX8 Unrestricted File Upload Vulnerability

Vulnerability

A critical vulnerability allowing unauthorized file uploads has been identified in the FLIR AX8 camera, affecting versions through 1.46. The issue resides in the file '/upload.php', where the 'File' argument can be manipulated to bypass upload restrictions. This vulnerability can be exploited remotely, and a public proof-of-concept exploit is available.

Impact

Exploitation of this vulnerability allows for unrestricted file uploads, which could be used to upload malicious files that are processed by the application, potentially leading to further exploitation or unauthorized access.

Reproduction

The vulnerability can be reproduced by sending a request to the '/upload.php' endpoint with a manipulated 'File' argument that bypasses the file type restrictions. This can be done remotely, and the vulnerability can be found using Google Hacking by searching for 'inurl:upload.php'.

Added: Jun 19, 2025, 12:16 PM
Updated: Jun 19, 2025, 12:16 PM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
7.5
exploitability
9.1
remediation
0.0
relevance
0.2
threat
6.4
urgency
2.9
incentive
10.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.