[] NeoSense

Axis Communications 207W Network Camera - Web Interface axis-cgi/admin/restart.cgi Cross-Site Request Forgery

Author: Seth Fogie
type: webapps
platform: cgi
port: 
date_added: 2007-09-14 
date_updated: 2013-12-30 
verified: 1 
codes: CVE-2007-4930;OSVDB-39481 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/25678/info

Axis Communications 207W Network Camera is prone to multiple vulnerabilities in the web interface. Three issues were reported: a cross-site scripting vulnerability, a cross-site request-forgery vulnerability, and a denial-of-service vulnerability.

Exploiting these issues may allow an attacker to compromise the device or to prevent other users from using the device.

Reboot the camera - http://www.example.com/axis-cgi/admin/restart.cgi