Show plain JSON{"id": "CVE-2023-21405", "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "product-security@axis.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.5, "attackVector": "ADJACENT_NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 3.6, "exploitabilityScore": 2.8}, {"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.5, "attackVector": "ADJACENT_NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "NONE"}, "impactScore": 3.6, "exploitabilityScore": 2.8}]}, "published": "2023-07-25T08:15:09.927", "references": [{"url": "https://www.axis.com/dam/public/7f/3a/ed/cve-2023-21405-en-US-407244.pdf", "tags": ["Vendor Advisory"], "source": "product-security@axis.com"}, {"url": "https://www.axis.com/dam/public/7f/3a/ed/cve-2023-21405-en-US-407244.pdf", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Secondary", "source": "product-security@axis.com", "description": [{"lang": "en", "value": "CWE-1286"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-noinfo"}]}, {"type": "Secondary", "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "description": [{"lang": "en", "value": "CWE-754"}]}], "descriptions": [{"lang": "en", "value": "Knud from Fraktal.fi has found a flaw in some Axis Network Door Controllers and Axis Network\nIntercoms when communicating over OSDP, highlighting that the OSDP message parser crashes\nthe pacsiod process, causing a temporary unavailability of the door-controlling functionalities\nmeaning that doors cannot be opened or closed. No sensitive or customer data can be extracted\nas the Axis device is not further compromised. Please refer to the Axis security advisory for more information, mitigation and affected products and software versions."}], "lastModified": "2024-11-21T07:42:47.763", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:a1001_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "250BA4C3-1498-4C31-9199-ED26336E4467", "versionEndIncluding": "1.65.4"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a1001:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "17AB03CB-201D-4838-AA48-EE2BEABB1DDE"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:a1210_\\(-b\\)_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1025D3EF-359A-42F8-A6F3-A1A913BC84FF", "versionEndIncluding": "11.6.16.0", "versionStartIncluding": "11.0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a1210_\\(-b\\):-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A1CDF5C3-76A2-4D39-91C7-0F6D76EA2D0C"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:a1601_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0CF7DD49-AC16-4AF1-BCFF-7E9B385C17D7", "versionEndIncluding": "1.84.4"}, {"criteria": "cpe:2.3:o:axis:a1601_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6ADF9CDC-B131-4568-9E40-51534D18B033", "versionEndIncluding": "10.12.171.0", "versionStartIncluding": "10.0"}, {"criteria": "cpe:2.3:o:axis:a1601_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4AF50B3C-1DBC-4B90-8437-8FFB40878611", "versionEndIncluding": "11.6.16.0", "versionStartIncluding": "11.0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a1601:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "1D256893-7BD3-40A6-9877-2DED01770AC5"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:a1610_\\(-b\\)_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "650F99B2-0A4E-4642-BFEE-83E137EE1940", "versionEndIncluding": "10.12.171.0"}, {"criteria": "cpe:2.3:o:axis:a1610_\\(-b\\)_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B19B16FF-93F4-46BF-B629-3FDE840EAE2D", "versionEndIncluding": "11.6.16.0", "versionStartIncluding": "11.0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a1610_\\(-b\\):-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "02A7D1B6-D87A-47DF-8CB4-76AD56B450EA"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:axis_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED306393-885B-4898-95C7-CE5F61B96ED2", "versionEndIncluding": "10.12.178"}, {"criteria": "cpe:2.3:o:axis:axis_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "352DA079-F861-49FF-AA51-F98F1188DFFE", "versionEndIncluding": "11.5.53", "versionStartIncluding": "11.0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a8207:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "498E4857-D25F-4827-8328-023B02A64006"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:axis:axis_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED306393-885B-4898-95C7-CE5F61B96ED2", "versionEndIncluding": "10.12.178"}, {"criteria": "cpe:2.3:o:axis:axis_os:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "352DA079-F861-49FF-AA51-F98F1188DFFE", "versionEndIncluding": "11.5.53", "versionStartIncluding": "11.0"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:axis:a8207_mkii:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8AEF2999-77C1-4B5D-A633-FCE9E49F8376"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "product-security@axis.com"}