CVE-2007-5213
published 2007-10-04CVE-2007-5213: Multiple cross-site request forgery (CSRF) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware 2.43 and earlier allow remote attackers to…
PriorityP336critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
1.69%
74.5th percentile
Multiple cross-site request forgery (CSRF) vulnerabilities in the AXIS 2100 Network Camera 2.02 with firmware 2.43 and earlier allow remote attackers to perform actions as administrators, as demonstrated by (1) an SMTP server change through the conf_SMTP_MailServer1 parameter to ServerManager.srv and (2) a hostname change through the conf_Network_HostName parameter on the Network page.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| axis | 2100_network_camera | — | — |
| axis | 2100_network_camera_firmware | <= 2.42 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/39490http://osvdb.org/39491http://securityreason.com/securityalert/3188http://www.procheckup.com/Vulnerability_Axis_2100_research.pdfhttp://www.securityfocus.com/archive/1/480995/100/0/threadedhttp://www.securityfocus.com/bid/25837http://osvdb.org/39490http://osvdb.org/39491http://securityreason.com/securityalert/3188http://www.procheckup.com/Vulnerability_Axis_2100_research.pdfhttp://www.securityfocus.com/archive/1/480995/100/0/threadedhttp://www.securityfocus.com/bid/25837
2007-10-04
Published