Gee-netics, member of the AXIS Camera Station Pro Bug Bounty Program has found that it is possible for a non-admin user to gain system privileges by redirecting a file deletion upon service restart.
Axis has released patched versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-11-26 07:15
Updated : 2024-11-26 07:15
NVD link : CVE-2024-6476
Mitre link : CVE-2024-6476
CVE.ORG link : CVE-2024-6476
JSON object : View
Products Affected
No product.
CWE
CWE-276
Incorrect Default Permissions