Axis Communications 207W Network Camera - Web Interface axis-cgi/admin/restart.cgi Cross-Site Request Forgery
Author: Seth Fogie
type: webapps
platform: cgi
port:
date_added: 2007-09-14
date_updated: 2013-12-30
verified: 1
codes: CVE-2007-4930;OSVDB-39481
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/25678/info
Axis Communications 207W Network Camera is prone to multiple vulnerabilities in the web interface. Three issues were reported: a cross-site scripting vulnerability, a cross-site request-forgery vulnerability, and a denial-of-service vulnerability.
Exploiting these issues may allow an attacker to compromise the device or to prevent other users from using the device.
Reboot the camera - http://www.example.com/axis-cgi/admin/restart.cgi