Overview
- Description
- Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API manageoverlayimage.cgi was vulnerable to path traversal attacks that allows for file/folder deletion. This flaw can only be exploited after authenticating with an operator- or administrator- privileged service account. The impact of exploiting this vulnerability is lower with operator service accounts and limited to non-system files compared to administrator-privileges. Axis has released patched AXIS OS versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
- Source
- product-security@axis.com
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.1
- Impact score
- 4.2
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
- Severity
- HIGH
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*", "vulnerable": true, "matchCriteriaId": "D4DE1198-6B4E-41BF-A97F-0EBD1B575D21", "versionEndExcluding": "11.7.57" }, { "criteria": "cpe:2.3:o:axis:axis_os_2020:*:*:*:*:lts:*:*:*", "vulnerable": true, "matchCriteriaId": "E20A1DAB-0D5B-4952-B4C0-A6A5808C49FD", "versionEndExcluding": "9.80.49" }, { "criteria": "cpe:2.3:o:axis:axis_os_2022:*:*:*:*:lts:*:*:*", "vulnerable": true, "matchCriteriaId": "2DC5A60B-0BD7-4ABC-8AA6-F1C8ED964EB2", "versionEndExcluding": "10.12.208" } ], "operator": "OR" } ] } ]