A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions extract a memory dump from the built-in Windows Task Manager application. The memory dump may potentially contain credentials of connected Axis devices.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.axis.com/files/tech_notes/CVE-2021-31989.pdf |
History
Fri, 08 Nov 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-316 |
MITRE
Status: PUBLISHED
Assigner: Axis
Published: 2021-08-25T18:29:41
Updated: 2024-11-08T08:21:08.424Z
Reserved: 2021-04-30T00:00:00
Link: CVE-2021-31989
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-08-25T19:15:11.940
Modified: 2024-11-21T06:06:40.567
Link: CVE-2021-31989
Redhat
No data.