Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-5553

Опубликовано: 21 нояб. 2023
Источник: nvd
CVSS3: 7.6
CVSS3: 6.8
EPSS Низкий

Описание

During internal Axis Security Development Model (ASDM) threat-modelling, a flaw was found in the protection for device tampering (commonly known as Secure Boot) in AXIS OS making it vulnerable to a sophisticated attack to bypass this protection. To Axis' knowledge, there are no known exploits of the vulnerability at this time. Axis has released patched AXIS OS versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*
Версия от 10.8 (включая) до 11.7.57 (исключая)
cpe:2.3:o:axis:axis_os_2022:*:*:*:*:lts:*:*:*
Версия до 10.12.213 (исключая)

EPSS

Процентиль: 9%
0.00032
Низкий

7.6 High

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-863
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 7.6
github
около 2 лет назад

During internal Axis Security Development Model (ASDM) threat-modelling, a flaw was found in the protection for device tampering (commonly known as Secure Boot) in AXIS OS making it vulnerable to a sophisticated attack to bypass this protection. To Axis' knowledge, there are no known exploits of the vulnerability at this time. Axis has released patched AXIS OS versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

CVSS3: 7.6
fstec
около 2 лет назад

Уязвимость программного обеспечения для внутреннего моделирования угроз Axis Security Development Model операционной системы AXIS OS, связанная с недостатками разграничения доступа, позволяющая нарушителю обойти существующие ограничения безопасности

EPSS

Процентиль: 9%
0.00032
Низкий

7.6 High

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-863
NVD-CWE-noinfo