CVE-2018-9158: Input Validation
An issue was discovered on AXIS M1033-W (IP camera) Firmware version 5.40.5.1 devices. They don't employ a suitable mechanism to prevent a DoS attack, which leads to a response time delay. An attacker can use the hping3 tool to perform an IPv4 flood attack, and the services are interrupted from attack start to end.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-9158.
What is the severity of CVE-2018-9158?
The severity of CVE-2018-9158 is high, with a severity value of 7.5.
What is the affected software?
The affected software is AXIS M1033-W (IP camera) Firmware version 5.40.5.1.
How can an attacker exploit CVE-2018-9158?
An attacker can exploit CVE-2018-9158 by using the hping3 tool to perform an IPv4 flood attack.
Is there a fix available for CVE-2018-9158?
At the moment, there is no information available about a fix for CVE-2018-9158. It is recommended to stay updated with the latest firmware releases from Axis Communications.