CVE-2003-1386: Medium severity Axis 2400 Video Server vulnerability
AXIS 2400 Video Server 2.00 through 2.33 allows remote attackers to obtain sensitive information via an HTTP request to /support/messages, which displays the server's /var/log/messages file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1386?
CVE-2003-1386 has a moderate severity rating as it allows unauthorized access to sensitive information.
How do I fix CVE-2003-1386?
To fix CVE-2003-1386, it is recommended to upgrade to a version of the AXIS 2400 Video Server that is not affected by this vulnerability.
Which versions of AXIS Video Server are affected by CVE-2003-1386?
CVE-2003-1386 affects AXIS 2400 Video Server versions 2.00 through 2.33 and Axis 2401 Video Server versions 2.20 through 2.33.
What kind of information can be exposed due to CVE-2003-1386?
CVE-2003-1386 can expose the server's /var/log/messages file, which may contain sensitive information.
Is CVE-2003-1386 a remote code execution vulnerability?
No, CVE-2003-1386 is not a remote code execution vulnerability but rather an information disclosure vulnerability.