If you are looking for the paper that describes how these flaws, you would need to look at the Axis Security Bulletins rather than academic papers, as they detail the mitigation strategies implemented in firmware updates.
“Fixed a critical vulnerability where unauthorized users could access live view through SDP negotiation.”
The Axis device live view stream has been updated with the latest security patch. All PTZ controls and video feeds are now running on the patched firmware. No interruption to live monitoring occurred during the update.
: Updates were implemented to disable default "root" passwords, ensuring devices are no longer accessible out-of-the-box with factory settings like "pass". How to Ensure Your System is Patched
If you want to add functional elements to the live interface without writing a custom application: Action Buttons