9
CVE-2025-30023
- EPSS 1.92%
- Veröffentlicht 11.07.2025 06:15:24
- Zuletzt bearbeitet 23.01.2026 21:14:03
- Quelle product-security@axis.com
- CVE-Watchlists
- Unerledigt
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Axis ≫ Camera Station Version < 5.58.47195
Axis ≫ Camera Station Pro Version < 6.9.47069
Axis ≫ Device Manager Version < 5.32.137
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.92% | 0.828 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| product-security@axis.com | 9 | 2.3 | 6 |
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
|
CWE-502 Deserialization of Untrusted Data
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.