CVE-2015-2860: Avigilon Control Center

High severity, CVSS 7.8. EPSS: 2.7% chance of exploitation in the next 30 days.

Directory traversal vulnerability in Avigilon Control Center (ACC) 4 before 4.12.0.54 and 5 before 5.4.2.22 allows remote attackers to read arbitrary files via a crafted help/ URL.

Affected products

  • Avigilon Avigilon Control Center: up to and including 5.4.2.21; up to and including 4.12.0.53

Published 2015-06-23. Last modified 2026-06-17.