Vulnerabilities > Axis > Modular Camera

DATE CVE VULNERABILITY TITLE RISK
2017-05-02 CVE-2015-8257 Command Injection vulnerability in Axis Network Camera Firmware
The devtools.sh script in AXIS network cameras allows remote authenticated users to execute arbitrary commands via shell metacharacters in the app parameter to (1) app_license.shtml, (2) app_license_custom.shtml, (3) app_index.shtml, or (4) app_params.shtml.
network
low complexity
axis CWE-77
critical
9.0
2017-04-17 CVE-2015-8256 Cross-site Scripting vulnerability in Axis Network Camera Firmware
Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.
network
axis CWE-79
4.3