Description
Gee-netics, member of the AXIS Camera Station Pro Bug Bounty Program has found that it is possible for a non-admin user to gain system privileges by redirecting a file deletion upon service restart.
Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47984 | Gee-netics, member of the AXIS Camera Station Pro Bug Bounty Program has found that it is possible for a non-admin user to gain system privileges by redirecting a file deletion upon service restart. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution. |
References
History
Tue, 26 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 Nov 2024 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Gee-netics, member of the AXIS Camera Station Pro Bug Bounty Program has found that it is possible for a non-admin user to gain system privileges by redirecting a file deletion upon service restart. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution. | |
| Weaknesses | CWE-276 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Axis
Published:
Updated: 2024-11-26T14:09:25.935Z
Reserved: 2024-07-03T13:20:56.227Z
Link: CVE-2024-6476
Updated: 2024-11-26T14:04:13.853Z
Status : Deferred
Published: 2024-11-26T07:15:05.697
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-6476
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD