CVE Vulnerabilities

CVE-2004-2425

Published: Dec 31, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Axis Network Camera 2.40 and earlier, and Video Server 3.12 and earlier, allows remote attackers to execute arbitrary commands via accent (`) and possibly other shell metacharacters in the query string to virtualinput.cgi.

Affected Software

NameVendorStart VersionEnd Version
2100_network_cameraAxis2.12 (including)2.12 (including)
2100_network_cameraAxis2.30 (including)2.30 (including)
2100_network_cameraAxis2.31 (including)2.31 (including)
2100_network_cameraAxis2.32 (including)2.32 (including)
2100_network_cameraAxis2.33 (including)2.33 (including)
2100_network_cameraAxis2.34 (including)2.34 (including)
2100_network_cameraAxis2.40 (including)2.40 (including)
2100_network_cameraAxis2.41 (including)2.41 (including)
2110_network_cameraAxis2.12 (including)2.12 (including)
2110_network_cameraAxis2.30 (including)2.30 (including)
2110_network_cameraAxis2.31 (including)2.31 (including)
2110_network_cameraAxis2.32 (including)2.32 (including)
2110_network_cameraAxis2.34 (including)2.34 (including)
2110_network_cameraAxis2.40 (including)2.40 (including)
2110_network_cameraAxis2.41 (including)2.41 (including)
2120_network_cameraAxis2.12 (including)2.12 (including)
2120_network_cameraAxis2.30 (including)2.30 (including)
2120_network_cameraAxis2.31 (including)2.31 (including)
2120_network_cameraAxis2.32 (including)2.32 (including)
2120_network_cameraAxis2.34 (including)2.34 (including)
2120_network_cameraAxis2.40 (including)2.40 (including)
2120_network_cameraAxis2.41 (including)2.41 (including)
2130_ptz_network_cameraAxis2.30 (including)2.30 (including)
2130_ptz_network_cameraAxis2.31 (including)2.31 (including)
2130_ptz_network_cameraAxis2.32 (including)2.32 (including)
2130_ptz_network_cameraAxis2.34 (including)2.34 (including)
2130_ptz_network_cameraAxis2.40 (including)2.40 (including)
230_mpeg2_video_serverAxis3.11 (including)3.11 (including)
2400_video_serverAxis1.1 (including)1.1 (including)
2400_video_serverAxis1.2 (including)1.2 (including)
2400_video_serverAxis1.10 (including)1.10 (including)
2400_video_serverAxis1.11 (including)1.11 (including)
2400_video_serverAxis1.12 (including)1.12 (including)
2400_video_serverAxis1.15 (including)1.15 (including)
2400_video_serverAxis2.0 (including)2.0 (including)
2400_video_serverAxis2.20 (including)2.20 (including)
2400_video_serverAxis2.30 (including)2.30 (including)
2400_video_serverAxis2.31 (including)2.31 (including)
2400_video_serverAxis2.32 (including)2.32 (including)
2400_video_serverAxis2.33 (including)2.33 (including)
2400_video_serverAxis2.34 (including)2.34 (including)
2400_video_serverAxis3.11 (including)3.11 (including)
2400_video_serverAxis3.12 (including)3.12 (including)
2401_video_serverAxis1.0_1 (including)1.0_1 (including)
2401_video_serverAxis1.15 (including)1.15 (including)
2401_video_serverAxis2.20 (including)2.20 (including)
2401_video_serverAxis2.30 (including)2.30 (including)
2401_video_serverAxis2.31 (including)2.31 (including)
2401_video_serverAxis2.32 (including)2.32 (including)
2401_video_serverAxis2.33 (including)2.33 (including)
2401_video_serverAxis2.34 (including)2.34 (including)
2401_video_serverAxis3.12 (including)3.12 (including)
2401_video_serverAxis3.13 (including)3.13 (including)
2411_video_serverAxis3.12 (including)3.12 (including)
2411_video_serverAxis3.13 (including)3.13 (including)
2420_network_cameraAxis2.12 (including)2.12 (including)
2420_network_cameraAxis2.30 (including)2.30 (including)
2420_network_cameraAxis2.31 (including)2.31 (including)
2420_network_cameraAxis2.32 (including)2.32 (including)
2420_network_cameraAxis2.33 (including)2.33 (including)
2420_network_cameraAxis2.34 (including)2.34 (including)
2420_network_cameraAxis2.40 (including)2.40 (including)
2420_network_cameraAxis2.41 (including)2.41 (including)
2420_video_serverAxis2.32 (including)2.32 (including)
2420_video_serverAxis2.34 (including)2.34 (including)
2460_network_dvrAxis**
2460_network_dvrAxis3.10 (including)3.10 (including)
2460_network_dvrAxis3.11 (including)3.11 (including)
2490_serial_serverAxis**
2490_serial_serverAxis2.11.3 (including)2.11.3 (including)
250s_video_serverAxis**
250s_video_serverAxis3.03 (including)3.03 (including)
250s_video_serverAxis3.10 (including)3.10 (including)
Storpoint_cdAxis**

References