First published: Fri Aug 04 2017(Updated: )
AXIS 2100 devices 2.43 have XSS via the URI, possibly related to admin/admin.shtml.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axis 2100 Network Camera Firmware | =2.43 | |
Axis 2100 Network Camera Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12413 has a medium severity rating due to its Cross-Site Scripting (XSS) vulnerability affecting AXIS 2100 devices.
To fix CVE-2017-12413, update your AXIS 2100 Network Camera firmware to a version later than 2.43.
CVE-2017-12413 is caused by insufficient validation of user-supplied input in the URI, allowing XSS attacks.
CVE-2017-12413 specifically affects AXIS 2100 Network Camera running firmware version 2.43.
No, any firmware version prior to 2.43 is vulnerable to CVE-2017-12413 and should be updated.