VYPR
Medium severity6.8NVD Advisory· Published Oct 5, 2021· Updated Jun 17, 2026

CVE-2021-31986

CVE-2021-31986

Description

User controlled parameters related to SMTP notifications are not correctly validated. This can lead to a buffer overflow resulting in crashes and data leakage.

Affected products

6
  • Axis/AXIS OScpe-rescue2 versions
    AXIS OS 6.40 or later+ 1 more
    • (no CPE)range: AXIS OS 6.40 or later
    • cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*range: <10.7
  • cpe:2.3:o:axis:axis_os_2016:*:*:*:*:lts:*:*:*
    Range: <6.50.5.5
  • cpe:2.3:o:axis:axis_os_2018:*:*:*:*:lts:*:*:*
    Range: <8.40.4.3
  • cpe:2.3:o:axis:axis_os_2020:*:*:*:*:lts:*:*:*
    Range: <9.80.3.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.