4.3
CVSSv2

CVE-2011-5261

Published: 12/02/2013 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in serverreport.cgi in Axis M10 Series Network Cameras M1054 firmware 5.21 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the pageTitle parameter to admin/showReport.shtml.

Vulnerable Product Search on Vulmon Subscribe to Product

axis m10_series_network_cameras_firmware

axis m1054_network_camera -

Exploits

source: wwwsecurityfocuscom/bid/50968/info Axis M10 Series Network Cameras are prone to a cross-site scripting vulnerability because they fail to sufficiently sanitize user-supplied data An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site This m ...