PT-2023-18810 · Axis · Axis 207W

Siegfried

·

Publicado

2023-02-21

·

Atualizado

2024-08-02

·

CVE-2023-22984

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Axis 207W network camera (affected versions not specified)
Description A reflected XSS issue in the web administration portal of the Axis 207W network camera allows an attacker to execute arbitrary JavaScript via URL. This enables the attacker to potentially steal user sessions, hijack user accounts, or perform other malicious actions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-22984

Produtos afetados

Axis 207W