CVE-2003-1386
AXIS 2400 Video Server 2.00-2.33 - Unauthenticated Sensitive Information Exposure via /support/messages
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2003-1386. PoCs published by Martin Eiszner.
AI-analyzed exploit summary This entry describes an information leakage vulnerability in Axis Video Server where sensitive operational details are exposed via an unsecured endpoint. The provided URL demonstrates the path to access these messages without authentication.
Description
AXIS 2400 Video Server 2.00 through 2.33 allows remote attackers to obtain sensitive information via an HTTP request to /support/messages, which displays the server's /var/log/messages file.
Exploits (1)
This entry describes an information leakage vulnerability in Axis Video Server where sensitive operational details are exposed via an unsecured endpoint. The provided URL demonstrates the path to access these messages without authentication.