The vendor explicitly identifies these products as affected by this CVE.
- axis as a component of Red Hat Enterprise Linux 6
- axis-javadoc as a component of Red Hat Enterprise Linux 6
- axis-manual as a component of Red Hat Enterprise Linux 6
- axis.src as a component of Red Hat Enterprise Linux 6
- Summary
- A flaw was found in Axis. An attacker with an administrator-privileged service account could exploit improper input validation in a VAPIX API parameter. This could allow for arbitrary code execution and potentially lead to privilege escalation, granting the attacker higher system privileges.
- Remediation
- Out of support scope
