Improper Authorization Vulnerability in FLIR AX8 Thermal Cameras
CVE-2024-3013
Key Information:
- Vendor
Teledyne Flir
- Status
- Vendor
- CVE Published:
- 28 March 2024
Badges
What is CVE-2024-3013?
An improper authorization vulnerability exists in the FLIR AX8 thermal camera system affecting versions prior to 1.46.16. This flaw stems from a weakness in the user registration component located in /tools/test_login.php?action=register, allowing unauthorized users to register accounts without proper validation. As a result, attackers can potentially gain access to sensitive information and functionalities remotely. The vulnerability has been publicly disclosed, raising significant concerns regarding the security of the affected devices. Users of the FLIR AX8 are urged to review their security posture and consider applying necessary updates or mitigating measures.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
AX8 1.46.0
AX8 1.46.1
AX8 1.46.2
References
CVSS V4
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
