Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Sun, 27 May 2012 23:09:56 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2153065440&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F0305-exploits%2Fcore.axis.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2153065440.1338160196.1338160196.1338160196.1%3B%2B__utmz%3D32867617.1338160196.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) core.axis.txt http://packetstormsecurity.org/files/31168/core.axis.txt http://packetstormsecurity.org/files/31168/core.axis.txt http://packetstormsecurity.org/files/31168/core.axis.txt.html Wed, 28 May 2003 08:54:05 GMT Core Security Technologies Advisory ID: CORE-2003-0403 - The Axis Network Camera HTTP server is vulnerable to an authentication bypass when a double slash is put in front of the admin directory in the URL. This allows a remote attacker to modify the configuration as they see fit and allows the root password to be reset. Doing this in conjunction with enabling the telnet server allows for a complete server compromise.