CVE-2022-4364

CRITICAL

A vulnerability has been found in Teledyne FLIR AX8 up to 1.46.16. Affected by this issue is some unknown functionality of the file palette.php of the component Web Service Handler. The manipulatio...

Affects 2 products across 1 vendor.

BCS7.77
CVSS 3.19.8
CVSS v45.5
EPSS4.2%
Percentile90th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, impact contained to the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-74: Injection

Parent class for all injection vulnerabilities where attacker-supplied data is interpreted as code or commands.

CWE-77: Command Injection

Attacker injects operating system commands through application inputs passed to a shell or system call.

CWE-78: OS Command Injection

Attacker injects OS commands through application inputs passed to system() or equivalent calls, leading to arbitrary command execution.

Related Attack Patterns (CAPEC)
CAPEC-3 Using Leading 'Ghost' Character Sequences to Bypass Input Filters
via CWE-74
CAPEC-7 Blind SQL Injection
via CWE-74
CAPEC-8 Buffer Overflow in an API Call
via CWE-74
CAPEC-9 Buffer Overflow in Local Command-Line Utilities
via CWE-74
CAPEC-10 Buffer Overflow via Environment Variables
via CWE-74
Show all 44
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-74
via CWE-77
via CWE-77
via CWE-78
via CWE-74
via CWE-77
via CWE-77
via CWE-74
via CWE-74
via CWE-74
via CWE-77

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

A critical command injection vulnerability exists in Teledyne FLIR AX8 up to version 1.46.16, affecting the Web Service Handler component via the palette.php file. This vulnerability allows remote attackers to execute arbitrary commands, posing a significant security risk.

BSID: BS-2022-GLOBAL-339583-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2022-4364?
A critical command injection vulnerability exists in Teledyne FLIR AX8 up to version 1.46.16, affecting the Web Service Handler component via the palette.php file. This vulnerability allows remote attackers to execute arbitrary commands, posing a significant security risk.
What is the CVSS score for CVE-2022-4364?
CVE-2022-4364 has CVSS 9.8 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. EPSS: 4.2%.
Is CVE-2022-4364 actively exploited?
No confirmed active exploitation of CVE-2022-4364 as of 2026-05-30.
How do I remediate CVE-2022-4364?
Priority: IMMEDIATE.
What systems are affected by CVE-2022-4364?
CVE-2022-4364 affects: Flir, Flir.
Vulnerability Details
CVE IDCVE-2022-4364
BSIDBS-2022-GLOBAL-339583-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published2022-12-08
Last Modified2026-04-29
ICS Relevance15%
Weakness (CWE)
SourceNVD
Official Description

A vulnerability has been found in Teledyne FLIR AX8 up to 1.46.16. Affected by this issue is some unknown functionality of the file palette.php of the component Web Service Handler. The manipulation of the argument palette leads to command injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.49.16 can resolve this issue. Upgrading the affected component is advised. The vendor points out: "FLIR AX8 internal web site has been refactored to be able to handle the reported vulnerabilities."

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability is triggered by manipulating the 'palette' argument in the palette.php file of the Web Service Handler component. An attacker can exploit this by sending a specially crafted request to the vulnerable system, leading to command injection.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Flir Flir Ax8 Firmware
Flir Flir Ax8
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: July 2026 | Threat Age: 1325 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
SHA-512 Audit Hasheb7aa42c1c13eeb83246f2ec2ff870a6c050a04fab9c903530086bf40792f47c4e0d5d8879019ba5529cb32805deae9e9f521b210c69bd3f0eca2823c6132c68
Related CVEs affecting Flir
CVE-2023-29861 9.8 An issue found in FLIR-DVTEL version not specified allows a remote attacker t... CVE-2023-51126 9.8 Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16... CVE-2022-37061 9.8 All FLIR AX8 thermal sensor cameras version up to and including 1.46.16 are v... CVE-2018-3813 9.8 getConfigExportFile.cgi on FLIR Brickstream 2300 devices 2.0 4.1.53.166 has I... CVE-2025-6266 9.8 A vulnerability was detected in Teledyne FLIR AX8 up to 1.46. Affected by thi...
View all Flir CVEs →

Critical Severity - Know Your Exposure

A CVSS 9.8 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →