CVE-2007-5213 describes multiple Cross-Site Request Forgery (CSRF) vulnerabilities in the AXIS 2100 Network Camera, specifically firmware version 2.43 and earlier. This flaw allows remote attackers to execute administrative actions, such as changing SMTP server settings or the device hostname, without the administrator's explicit consent. With a CVSS score of 9.3 (Critical), this vulnerability has a network attack vector, medium attack complexity, and high impact on confidentiality, integrity, and availability. Despite its high severity, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.02CPE matchmatch criteria | cpe:2.3:h:axis:2100_network_camera:2.02:*:*:*:*:*:*:* | ||
<= 2.42CPE matchmatch criteria | cpe:2.3:h:axis:2100_network_camera_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.