PT-2026-20996 · Unknown · Smart Integrated Management Platform System
Lanmeik
·
Published
2026-02-20
·
Updated
2026-02-25
·
CVE-2026-2821
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Fujian Smart Integrated Management Platform System versions prior to 7.5
Description
A weakness exists in Fujian Smart Integrated Management Platform System up to version 7.5. The issue stems from a SQL injection affecting an unknown function within the
/Module/CRXT/Controller/XCamera.ashx file. Manipulating the ChannelName argument triggers the SQL injection. Remote exploitation is possible. The exploit has been publicly released and could be used for attacks.Recommendations
Update to a version prior to 7.5.
Exploit
Fix
SQL injection
Special Elements Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Smart Integrated Management Platform System