CVE-2017-20049 Vulnerability Details

  /     /     /  

CVE-2017-20049 Metadata Quick Info

CVE Published: 15/06/2022 | CVE Updated: 05/08/2024 | CVE Year: 2017
Source: Axis | Vendor: n/a | Product: AXIS OS
Status : PUBLISHED

CVE-2017-20049 Description

A vulnerability, was found in legacy Axis devices such as P3225 and M3005. This affects an unknown part of the component CGI Script. The manipulation leads to improper privilege management. It is possible to initiate the attack remotely.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Boa web server runs as root in legacy devices
Source: n/a

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).