### [CVE-2018-7825](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-7825) ![](https://img.shields.io/static/v1?label=Product&message=Pelco%20Sarix%20Enhanced%20and%20Spectra%20Enhanced%2C%20Pelco%20Sarix%20Enhanced%201st%20generation%20and%20Spectra%20Enhanced%20PTZ&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Multiple%20Vulnerabilities&color=brighgreen) ### Description A Command Injection vulnerability exists in the web-based GUI of the 1st Gen PelcoSarix Enhanced Camera that could allow a remote attacker to execute arbitrary commands. ### POC #### Reference - https://www.schneider-electric.com/en/download/document/SEVD-2019-045-03/ - https://www.schneider-electric.com/en/download/document/SEVD-2019-045-03/ #### Github No PoCs found on GitHub currently.