TROYANOSYVIRUS
Back to CVEs

CVE-2015-8257

N/A

Description

The devtools.sh script in AXIS network cameras allows remote authenticated users to execute arbitrary commands via shell metacharacters in the app parameter to (1) app_license.shtml, (2) app_license_custom.shtml, (3) app_index.shtml, or (4) app_params.shtml.

CVE Details

CVSS v3.1 ScoreN/A
Published5/2/2017
Last Modified4/20/2025
Sourcenvd
Honeypot Sightings0

Affected Products

axis:cannon_network_cameraaxis:explosion-protected_cameraaxis:fixed_box_cameraaxis:fixed_bullet_cameraaxis:fixed_dome_cameraaxis:modular_cameraaxis:network_camera_firmwareaxis:onboard_cameraaxis:panoramic_cameraaxis:ptz_cameraaxis:thermal_camera

Weaknesses (CWE)

CWE-77

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.