CVE-2015-8256

Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.
References
Link Resource
https://www.exploit-db.com/exploits/39683/ Exploit Third Party Advisory VDB Entry
http://packetstormsecurity.com/files/141674/AXIS-Network-Camera-Cross-Site-Scripting.html Exploit Third Party Advisory VDB Entry
http://www.securityfocus.com/bid/97699 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:axis:network_camera_firmware:-:*:*:*:*:*:*:*
OR cpe:2.3:h:axis:onboard_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:ptz_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:thermal_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:panoramic_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:modular_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:fixed_dome_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:explosion-protected_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:fixed_box_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:fixed_bullet_camera:-:*:*:*:*:*:*:*
cpe:2.3:h:axis:cannon_network_camera:-:*:*:*:*:*:*:*

Information

Published : 2017-04-17 09:59

Updated : 2017-04-24 17:40


NVD link : CVE-2015-8256

Mitre link : CVE-2015-8256


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

axis

  • explosion-protected_camera
  • modular_camera
  • fixed_dome_camera
  • fixed_box_camera
  • network_camera_firmware
  • ptz_camera
  • thermal_camera
  • onboard_camera
  • panoramic_camera
  • fixed_bullet_camera
  • cannon_network_camera