First published: Fri Oct 04 2013(Updated: )
The AXIS Media Control (AMC) ActiveX control (AxisMediaControlEmb.dll) 6.2.10.11 for AXIS network cameras allows remote attackers to create or overwrite arbitrary files via a file path to the (1) StartRecord, (2) SaveCurrentImage, or (3) StartRecordMedia methods.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axis Media Control Activex Control | =6.2.10.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3543 is classified as a high severity vulnerability due to its potential to allow remote attackers to create or overwrite arbitrary files.
To fix CVE-2013-3543, update the AXIS Media Control ActiveX control to the latest version that addresses this vulnerability.
CVE-2013-3543 specifically affects the AXIS Media Control ActiveX control version 6.2.10.11 used with AXIS network cameras.
CVE-2013-3543 can be exploited by remote attackers through malicious file paths passed to the StartRecord, SaveCurrentImage, or StartRecordMedia methods.
Yes, AXIS provides patches in newer versions of the Media Control ActiveX control to mitigate CVE-2013-3543.