9.3
CVE-2007-2239
- EPSS 21.88%
- Published 07.05.2007 19:19:00
- Last modified 09.04.2025 00:30:58
- Source cret@cert.org
- Teams watchlist Login
- Open Login
Stack-based buffer overflow in the SaveBMP method in the AXIS Camera Control (aka CamImage) ActiveX control before 2.40.0.0 in AxisCamControl.ocx in AXIS 2100, 2110, 2120, 2130 PTZ, 2420, 2420-IR, 2400, 2400+, 2401, 2401+, 2411, and Panorama PTZ allows remote attackers to cause a denial of service (Internet Explorer crash) or execute arbitrary code via a long argument.
Data is provided by the National Vulnerability Database (NVD)
Axis ≫ 2100 Network Camera Version <= 2.39
Axis ≫ 2110 Network Camera Version <= 2.39
Axis ≫ 2120 Network Camera Version <= 2.39
Axis ≫ 2130 Ptz Network Camera Version <= 2.39
Axis ≫ 2400 Video Server Version <= 2.39
Axis ≫ 2401 Video Server Version <= 2.39
Axis ≫ 2411 Video Server Version <= 2.39
Axis ≫ 2420-ir Network Camera Version <= 2.39
Axis ≫ 2420 Network Camera Version <= 2.39
Axis ≫ Panorama Ptz Camera Version <= 2.39
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 21.88% | 0.954 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|