Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program has found that it is possible to edit and/or remove views without the necessary permission due to a client-side-only check.
Axis has released patched versions for the highlighted flaw. Please
refer to the Axis security advisory for more information and solution.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 26 Nov 2024 07:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program has found that it is possible to edit and/or remove views without the necessary permission due to a client-side-only check. Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution. | |
Weaknesses | CWE-602 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: Axis
Published: 2024-11-26T07:14:58.823Z
Updated: 2024-11-26T14:09:25.685Z
Reserved: 2024-07-17T11:19:49.788Z
Link: CVE-2024-6831
Vulnrichment
Updated: 2024-11-26T14:04:02.389Z
NVD
Status : Received
Published: 2024-11-26T08:15:07.747
Modified: 2024-11-26T08:15:07.747
Link: CVE-2024-6831
Redhat
No data.