Seth Fogie, member of the AXIS Camera Station Pro Bug Bounty Program, has found that the Incident report feature may expose sensitive credentials on the AXIS Camera Station windows client. If Incident report is not being used with credentials configured this flaw does not apply.
Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 26 Nov 2024 07:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Seth Fogie, member of the AXIS Camera Station Pro Bug Bounty Program, has found that the Incident report feature may expose sensitive credentials on the AXIS Camera Station windows client. If Incident report is not being used with credentials configured this flaw does not apply. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution. | |
Weaknesses | CWE-522 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Axis
Published: 2024-11-26T07:07:30.538Z
Updated: 2024-11-26T14:09:25.817Z
Reserved: 2024-07-15T12:57:57.220Z
Link: CVE-2024-6749
Vulnrichment
Updated: 2024-11-26T14:04:08.103Z
NVD
Status : Received
Published: 2024-11-26T07:15:05.857
Modified: 2024-11-26T07:15:05.857
Link: CVE-2024-6749
Redhat
No data.