Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.
CVSS Score
6.1
MEDIUM
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Axis | Network Camera Firmware | - |
| Axis | Cannon Network Camera | - |
| Axis | Explosion-Protected Camera | - |
| Axis | Fixed Box Camera | - |
| Axis | Fixed Bullet Camera | - |
| Axis | Fixed Dome Camera | - |
| Axis | Modular Camera | - |
| Axis | Onboard Camera | - |
| Axis | Panoramic Camera | - |
| Axis | Ptz Camera | - |
| Axis | Thermal Camera | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/141674/AXIS-Network-Camera-Cross-Site-ScripExploitThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/97699Third Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/39683/ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/141674/AXIS-Network-Camera-Cross-Site-ScripExploitThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/97699Third Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/39683/ExploitThird Party AdvisoryVDB Entry
FAQ
What is CVE-2015-8256?
CVE-2015-8256 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Multiple cross-site scripting (XSS) vulnerabilities in Axis network cameras.
How severe is CVE-2015-8256?
CVE-2015-8256 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-8256?
Check the references section above for vendor advisories and patch information. Affected products include: Axis Network Camera Firmware, Axis Cannon Network Camera, Axis Explosion-Protected Camera, Axis Fixed Box Camera, Axis Fixed Bullet Camera.