CVE-2024-7784
MEDIUMAXIS OS Secure Boot Bypass via Stack-based Buffer Overflow
Title source: llmDescription
During internal Axis Security Development Model (ASDM) threat-modelling, a flaw was found in the protection for device tampering (commonly known as Secure Boot) in AXIS OS making it vulnerable to a sophisticated attack to bypass this protection. To Axis' knowledge, there are no known exploits of the vulnerability at this time. Axis has released patched AXIS OS versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
References (1)
Core 1
Core References
Scores
CVSS v3
6.1
EPSS
0.0024
EPSS Percentile
14.6%
Attack Vector
PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-121
Status
published
Products (8)
Axis Communications AB/AXIS OS
10.10.0 - 10.12.247
Axis Communications AB/AXIS OS
10.9.0 - 10.12.246
Axis Communications AB/AXIS OS
11.0.0 - 11.11.80
Axis Communications AB/AXIS OS
11.0.0 - 11.11.85
Axis Communications AB/AXIS OS
11.11.0 - 11.11.80
Axis Communications AB/AXIS OS
11.8.0 - 11.11.85
Axis Communications AB/AXIS OS
12.0.0 - 12.0.40
Axis Communications AB/AXIS OS
12.0.0 - 12.0.47
Published
Sep 10, 2024
Tracked Since
Feb 18, 2026