First published: Mon May 08 2023(Updated: )
AXIS OS 11.0.X - 11.3.x use a static RSA key in legacy LUA-components to protect Axis-specific source code. The static RSA key is not used in any other secure communication nor can it be used to compromise the device or any customer data.
Credit: product-security@axis.com product-security@axis.com
Affected Software | Affected Version | How to fix |
---|---|---|
Axis Axis Os | >=11.0.89<11.4.52 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-21404.
The severity of CVE-2023-21404 is medium with a severity value of 5.3.
The affected software is AXIS OS version 11.0.X to 11.3.X.
The vulnerability does not compromise the device or any customer data.
Update the AXIS OS to a version higher than 11.4.52 as the vulnerability is fixed in that version.