İçeriğe atla
Noroxi

axis kayıtları

axis üreticisine ait 102 yayımlanmış kayıt.

Tüm kayıtlar

102 kayıt
  • CVE-2018-10661
    65Bu hafta

    An issue was discovered in multiple models of Axis IP Cameras.

    KritikCVSS 9,8SilahlaştırılmışEPSS %87

    axis · a1001 firmware26 Haz 2018

  • CVE-2018-10660
    64Bu hafta

    An issue was discovered in multiple models of Axis IP Cameras.

    KritikCVSS 9,8SilahlaştırılmışEPSS %82

    axis · a1001 firmware26 Haz 2018

  • CVE-2018-10662
    63Bu hafta

    An issue was discovered in multiple models of Axis IP Cameras.

    KritikCVSS 9,8SilahlaştırılmışEPSS %80

    axis · a1001 firmware26 Haz 2018

  • CVE-2003-0240
    49Planlayın

    The web-based administration capability for various Axis Network Camera products allows remote attackers to bypass access restrictions and m

    KritikCVSS 10,0Kavram kanıtıEPSS %30

    axis · 2100 network camera9 Haz 2003

  • CVE-2000-0191
    43Planlayın

    Axis StorPoint CD allows remote attackers to access administrator URLs without authentication via a ..

    KritikCVSS 10,0Kavram kanıtıEPSS %11

    axis · storpoint cd29 Şub 2000

  • CVE-2004-2427
    42Planlayın

    Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to obtain sensitive information via direct

    KritikCVSS 10,0İstismar yokEPSS %5

    axis · 2100 network camera31 Ara 2004

  • CVE-2007-2239
    41Planlayın

    Stack-based buffer overflow in the SaveBMP method in the AXIS Camera Control (aka CamImage) ActiveX control before 2.40.0.0 in AxisCamContro

    KritikCVSS 9,3Kavram kanıtıEPSS %12

    axis · 2100 network camera7 May 2007

  • CVE-2015-8257
    40Planlayın

    The devtools.sh script in AXIS network cameras allows remote authenticated users to execute arbitrary commands via shell metacharacters in t

    YüksekCVSS 8,8Kavram kanıtıEPSS %18

    axis · network camera firmware2 May 2017

  • CVE-2015-8256
    39İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.

    OrtaCVSS 6,1Kavram kanıtıEPSS %51

    axis · network camera firmware17 Nis 2017

  • CVE-2008-5260
    39İzleyin

    Heap-based buffer overflow in the CamImage.CamImage.1 ActiveX control in AxisCamControl.ocx in AXIS Camera Control 2.40.0.0 allows remote at

    KritikCVSS 9,3İstismar yokEPSS %6

    axis · axis camera control26 Oca 2009

  • CVE-2017-20049
    39İzleyin

    A vulnerability, was found in legacy Axis devices such as P3225 and M3005.

    KritikCVSS 9,8İstismar yokEPSS %2

    axis · p1204 firmware15 Haz 2022

  • CVE-2023-21409
    39İzleyin

    Insufficient file permissions leak administrator-privileged credentials in AXIS License Verifier ACAP

    KritikCVSS 9,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2023-21408
    39İzleyin

    Insufficient file permissions leak user credentials of 3rd party integration interfaces in AXIS License Verifier ACAP

    KritikCVSS 9,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2007-4926
    38İzleyin

    The AXIS 207W camera uses a base64-encoded cleartext username and password for authentication, which allows remote attackers to obtain sensi

    KritikCVSS 9,3İstismar yokEPSS %3

    axis · 207w camera18 Eyl 2007

  • CVE-2007-5213
    38İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware 2.43 and earlier allow remote

    KritikCVSS 9,3İstismar yokEPSS %2

    axis · 2100 network camera4 Eki 2007

  • CVE-2013-3543
    36İzleyin

    The AXIS Media Control (AMC) ActiveX control (AxisMediaControlEmb.dll) 6.2.10.11 for AXIS network cameras allows remote attackers to create

    YüksekCVSS 8,8Kavram kanıtıEPSS %4

    axis · media control activex control4 Eki 2013

  • CVE-2015-8255
    36İzleyin

    AXIS Communications products allow CSRF, as demonstrated by admin/pwdgrp.cgi, vaconfig.cgi, and admin/local_del.cgi.

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    axis · axis communications firmware9 Nis 2017

  • CVE-2025-30023
    36İzleyin

    The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execu

    KritikCVSS 9,0İstismar yokEPSS %1

    axis · camera station11 Tem 2025

  • CVE-2021-31988
    35İzleyin

    A user controlled parameter related to SMTP test functionality is not correctly validated making it possible to add the Carriage Return and

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · axis os5 Eki 2021

  • CVE-2023-21410
    35İzleyin

    Non-sanitized user input could lead to arbitrary code execution in AXIS License Plate Verifier

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2023-21411
    35İzleyin

    Non-sanitized user input could lead to arbitrary code execution during Access Control configuration in AXIS License Plate Verifier

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2023-5800
    35İzleyin

    Insufficient input validation in VAPIX API create_overlay.cgi

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · axis os5 Şub 2024

  • CVE-2023-21407
    35İzleyin

    Privilege escalation in AXIS License Plate Verifier ACAP

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2023-21412
    35İzleyin

    Non-sanitized user input could lead to SQL injections in AXIS License Plate Verifier

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · license plate verifier3 Ağu 2023

  • CVE-2023-5677
    35İzleyin

    Brandon Rothel from QED Secure Solutions and Sam Hanson of Dragos have found that the VAPIX API tcptest.cgi did not have a sufficient input

    YüksekCVSS 8,8İstismar yokEPSS %1

    axis · m3024-lve firmware5 Şub 2024