VITEC records
4 published records for vendor vitec.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')2
- CWE-1188 Initialization of a Resource with an Insecure Default1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2021-42109No exploit | VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.vitec · exterity avediaserver · CWE-1188 | Critical9.8 | — | 1.7% | Oct 8, 2021 |
38Monitor | CVE-2026-61498No exploit | Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via gen_graphs.phpvitec · flamingo · CWE-78 | Critical9.3 | — | 4.0% | Jul 13, 2026 |
38Monitor | CVE-2026-60121Proof of concept | Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via ping.phpvitec · flamingo · CWE-78 | Critical9.3 | — | 3.3% | Jul 13, 2026 |
35Monitor | CVE-2024-35102No exploit | Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a c | High8.8 | — | 0.5% | May 15, 2024 |
- CVE-2021-4210939Monitor
VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.
CriticalCVSS 9.8No exploitEPSS 2%vitec · exterity avediaserverOct 8, 2021
- CVE-2026-6149838Monitor
Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via gen_graphs.php
CriticalCVSS 9.3No exploitEPSS 4%vitec · flamingoJul 13, 2026
- CVE-2026-6012138Monitor
Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via ping.php
CriticalCVSS 9.3Proof of conceptEPSS 3%vitec · flamingoJul 13, 2026
- CVE-2024-3510235Monitor
Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a c
HighCVSS 8.8No exploitEPSS 1%May 15, 2024