CVE-2018-9158
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
An issue was discovered on AXIS M1033-W (IP camera) Firmware version 5.40.5.1 devices. They don't employ a suitable mechanism to prevent a DoS attack, which leads to a response time delay. An attacker can use the hping3 tool to perform an IPv4 flood attack, and the services are interrupted from attack start to end.
Se ha descubierto un problema en los dispositivos AXIS M1033-W (cámara IP) con versión de firmware 5.40.5.1. No emplean un mecanismo adecuado de prevención de ataques de denegación de servicio (DoS), lo que conduce a un retraso en los tiempos de respuesta. Un atacante puede utilizar la herramienta hping3 para realizar un ataque de inundación IPv4 y los servicios se interrumpen desde el principio hasta el final del ataque.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-03-31 CVE Reserved
- 2018-04-01 CVE Published
- 2024-02-09 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-20: Improper Input Validation
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://www.slideshare.net/secret/HpAEwK5qo5U4b1 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Axis Search vendor "Axis" | M1033-w Firmware Search vendor "Axis" for product "M1033-w Firmware" | 5.40.5.1 Search vendor "Axis" for product "M1033-w Firmware" and version "5.40.5.1" | - |
Affected
| in | Axis Search vendor "Axis" | M1033-w Search vendor "Axis" for product "M1033-w" | - | - |
Safe
|