Description
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
CVSS breakdown
CVSS 3.1
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Affected products
- Axis Communications AB / AXIS Camera Station<5.58 – <5.58
- Axis Communications AB / AXIS Camera Station Pro<6.9 – <6.9
- Axis Communications AB / AXIS Device Manager<5.32 – <5.32