M1125
Vendor:
First CVE: Jun 26, 2018 · Active for 8 years
9
Total CVEs
More Total CVEs than 86% of tracked products
4.5
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
7.9
Avg CVSS
Higher Avg CVSS than 68% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact M1125 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 26, 2018
8 years ago
Most Recent CVE
Jul 21, 2022
1,465 days ago
CVE Severity & Scoring
M11259 CVEs
22%
44%
33%
All CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (77.8%)
High2 (22.2%)
Unknown0 (0.0%)
User Interaction
None9 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None9 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-10661CRITICAL An issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control. | Jun 26, 2018 | 9.8 | 88 | NO | YES |
CVE-2018-10662CRITICAL An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface. | Jun 26, 2018 | 9.8 | 86 | NO | YES |
CVE-2018-10660CRITICAL An issue was discovered in multiple models of Axis IP Cameras. There is Shell Command Injection. | Jun 26, 2018 | 9.8 | 84 | NO | YES |
CVE-2018-10664HIGH An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption. | Jun 26, 2018 | 7.5 | 23 | NO | NO |
CVE-2018-10659HIGH There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a denial of service (crash) by sending a crafted command | Jun 26, 2018 | 7.5 | 23 | NO | NO |
CVE-2022-28861MEDIUM The server in Citilog 8.0 allows an attacker (in a man in the middle position between the server and its smart camera Axis M1125) to see FTP credentials in a cleartext HTTP traffic | Jul 21, 2022 | 5.9 | 21 | NO | NO |
CVE-2022-28860MEDIUM An authentication downgrade in the server in Citilog 8.0 allows an attacker (in a man in the middle position between the server and its smart camera Axis M1125) to achieve HTTP acc | Jul 21, 2022 | 5.9 | 20 | NO | NO |
CVE-2018-10663HIGH An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation. | Jun 26, 2018 | 7.5 | 19 | NO | NO |
CVE-2018-10658HIGH There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which causes a denial of service (crash). The crash arises from code inside libdbus-send.so sha | Jun 26, 2018 | 7.5 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
33.3% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
33.3% of CVEs· 90th percentile
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For M1125
Top CWEs
Versions
No cataloged versions.