Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27159 | A CSV injection vulnerability in the /id_profiles endpoint of Avigilon ACM v7.10.0.20 allows attackers to execute arbitrary code via suuplying a crafted Excel file. |
Fri, 12 Sep 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Avigilon
Avigilon access Control Manager |
|
| CPEs | cpe:2.3:a:avigilon:access_control_manager:7.10.0.20:*:*:*:*:*:*:* | |
| Vendors & Products |
Avigilon
Avigilon access Control Manager |
Mon, 08 Sep 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1236 | |
| Metrics |
cvssV3_1
|
Mon, 08 Sep 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A CSV injection vulnerability in the /id_profiles endpoint of Avigilon ACM v7.10.0.20 allows attackers to execute arbitrary code via suuplying a crafted Excel file. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-09-08T18:36:43.561Z
Reserved: 2025-08-16T00:00:00.000Z
Link: CVE-2025-56267
Updated: 2025-09-08T18:31:26.387Z
Status : Analyzed
Published: 2025-09-08T18:15:34.020
Modified: 2025-09-12T20:42:47.967
Link: CVE-2025-56267
No data.
OpenCVE Enrichment
No data.
EUVD