6.7

CVE-2025-4645

An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AxisAxis Os SwEditionactive Version >= 12.0.0 < 12.6.7
   AxisA1214 Version-
   AxisA1601 Version-
   AxisA1710-b Version-
   AxisA1810-b Version-
   AxisA8207-ve Mk Ii Version-
   AxisC1110-e Version-
   AxisC1111-e Version-
   AxisC1210-e Version-
   AxisC1211-e Version-
   AxisC1310-e Mk Ii Version-
   AxisC1410 Mk Ii Version-
   AxisC1510 Version-
   AxisC1511 Version-
   AxisC1610-ve Version-
   AxisC1710 Version-
   AxisC1720 Version-
   AxisC6110 Version-
   AxisC8110 Version-
   AxisC8210 Version-
   AxisD1110 Version-
   AxisD201-s Xpt Q6075 Version-
   AxisD2110-ve Version-
   AxisD2210-ve Version-
   AxisD3110 Mk Ii Version-
   AxisD4100-ve Mk Ii Version-
   AxisD4200-ve Version-
   AxisD6310 Version-
   AxisExcam Xf Q1785 Version-
   AxisExcam Xpt Q6075 Version-
   AxisF9104-b Main Unit Version-
   AxisF9104-b Mk Ii Main Unit Version-
   AxisF9111-r Mk Ii Main Unit Version-
   AxisF9111 Main Unit Version-
   AxisF9111 Mk Ii Main Unit Version-
   AxisF9114-b-r Mk Ii Main Unit Version-
   AxisF9114-b Main Unit Version-
   AxisF9114-bt Version-
   AxisF9114 Main Unit Version-
   AxisFa51 Version-
   AxisFa51-b Version-
   AxisFa54 Version-
   AxisI7010-safety Version-
   AxisI7010-ve Version-
   AxisI7020 Version-
   AxisI8016-lve Version-
   AxisI8116-e Version-
   AxisI8307-ve Version-
   AxisM1055-l Version-
   AxisM1075-l Version-
   AxisM1135 Version-
   AxisM1135-e Mk Ii Version-
   AxisM1137 Version-
   AxisM1137-e Mk Ii Version-
   AxisM2035-le Version-
   AxisM2036-le Version-
   AxisM3057-plr Mk Ii Version-
   AxisM3085-v Version-
   AxisM3086-v Version-
   AxisM3086-v Mic Version-
   AxisM3088-v Version-
   AxisM3125-lve Version-
   AxisM3126-lve Version-
   AxisM3128-lve Version-
   AxisM3215-lve Version-
   AxisM3216-lve Version-
   AxisM3905-r Version-
   AxisM4215-lv Version-
   AxisM4215-v Version-
   AxisM4216-lv Version-
   AxisM4216-v Version-
   AxisM4218-lv Version-
   AxisM4218-v Version-
   AxisM4225-lve Version-
   AxisM4227-lve Version-
   AxisM4228-lve Version-
   AxisM4308-ple Version-
   AxisM4317-plr Version-
   AxisM4317-plve Version-
   AxisM4318-plr Version-
   AxisM4318-plve Version-
   AxisM4327-p Version-
   AxisM4328-p Version-
   AxisM5000 Version-
   AxisM5000-g Version-
   AxisM5074 Version-
   AxisM5075 Version-
   AxisM5075-g Version-
   AxisM5526-e Version-
   AxisM7104 Version-
   AxisM7116 Version-
   AxisP1245 Mk Ii Version-
   AxisP1265 Mk Ii Version-
   AxisP1275 Mk Ii Version-
   AxisP1385 Version-
   AxisP1385-b Version-
   AxisP1385-be Version-
   AxisP1385-e Version-
   AxisP1387 Version-
   AxisP1387-b Version-
   AxisP1387-be Version-
   AxisP1387-le Version-
   AxisP1388 Version-
   AxisP1388-b Version-
   AxisP1388-be Version-
   AxisP1388-le Version-
   AxisP1465-le Version-
   AxisP1465-le-3 Version-
   AxisP1467-le Version-
   AxisP1468-le Version-
   AxisP1468-xle Version-
   AxisP1475-le Version-
   AxisP1518-e Version-
   AxisP1518-le Version-
   AxisP3265-lv Version-
   AxisP3265-lve Version-
   AxisP3265-lve-3 Version-
   AxisP3265-v Version-
   AxisP3267-lv Version-
   AxisP3267-lve Version-
   AxisP3267-lve Mic Version-
   AxisP3268-lv Version-
   AxisP3268-lve Version-
   AxisP3268-slve Version-
   AxisP3275-lv Version-
   AxisP3275-lve Version-
   AxisP3277-lv Version-
   AxisP3277-lve Version-
   AxisP3278-lv Version-
   AxisP3278-lve Version-
   AxisP3285-lv Version-
   AxisP3285-lve Version-
   AxisP3287-lv Version-
   AxisP3287-lve Version-
   AxisP3288-lv Version-
   AxisP3288-lve Version-
   AxisP3735-ple Version-
   AxisP3737-ple Version-
   AxisP3738-ple Version-
   AxisP3747-plve Version-
   AxisP3748-plve Version-
   AxisP3818-pve Version-
   AxisP3827-pve Version-
   AxisP3905-r Mk Iii Version-
   AxisP3925-lre Version-
   AxisP3925-r Version-
   AxisP3935-lr Version-
   AxisP4705-plve Version-
   AxisP4707-plve Version-
   AxisP4708-plve Version-
   AxisP5654-e Version-
   AxisP5654-e Mk Ii Version-
   AxisP5655-e Version-
   AxisP5676-le Version-
   AxisP7304 Version-
   AxisP7316 Version-
   AxisP9117-pv Version-
   AxisQ1615-le Mk Iii Version-
   AxisQ1615 Mk Iii Version-
   AxisQ1656 Version-
   AxisQ1656-b Version-
   AxisQ1656-be Version-
   AxisQ1656-ble Version-
   AxisQ1656-dle Version-
   AxisQ1656-le Version-
   AxisQ1686-dle Version-
   AxisQ1715 Version-
   AxisQ1728 Version-
   AxisQ1728-le Version-
   AxisQ1798-le Version-
   AxisQ1800-le Version-
   AxisQ1800-le-3 Version-
   AxisQ1805-le Version-
   AxisQ1806-le Version-
   AxisQ1808-le Version-
   AxisQ1809-le Version-
   AxisQ1961-te Version-
   AxisQ1961-xte Version-
   AxisQ1971-e Version-
   AxisQ1972-e Version-
   AxisQ2101-te Version-
   AxisQ2111-e Version-
   AxisQ2112-e Version-
   AxisQ3536-lve Version-
   AxisQ3538-lve Version-
   AxisQ3538-slve Version-
   AxisQ3546-lve Version-
   AxisQ3548-lve Version-
   AxisQ3556-lve Version-
   AxisQ3558-lve Version-
   AxisQ3626-ve Version-
   AxisQ3628-ve Version-
   AxisQ3819-pve Version-
   AxisQ3839-pve Version-
   AxisQ3839-spve Version-
   AxisQ4809-pve Version-
   AxisQ6020-e Version-
   AxisQ6074 Version-
   AxisQ6074-e Version-
   AxisQ6075 Version-
   AxisQ6075-e Version-
   AxisQ6075-s Version-
   AxisQ6075-se Version-
   AxisQ6078-e Version-
   AxisQ6135-le Version-
   AxisQ6225-le Version-
   AxisQ6300-e Version-
   AxisQ6315-le Version-
   AxisQ6318-le Version-
   AxisQ6355-le Version-
   AxisQ6358-le Version-
   AxisQ8615-e Version-
   AxisQ8752-e Version-
   AxisQ8752-e Mk Ii Version-
   AxisQ9307-lv Version-
   AxisS3008 Version-
   AxisS3008 Mk Ii Version-
   AxisS3016 Version-
   AxisS4000 Version-
   AxisV5925 Version-
   AxisV5938 Version-
   AxisW100 Version-
   AxisW101 Version-
   AxisW102 Version-
   AxisW110 Version-
   AxisW120 Version-
   AxisW401 Version-
   AxisXc1311 Version-
   AxisXf40-q1785 Version-
   AxisXfq1656 Version-
   AxisXpq1785 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.073
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
product-security@axis.com 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-1287 Improper Validation of Specified Type of Input

The product receives input that is expected to be of a certain type, but it does not validate or incorrectly validates that the input is actually of the expected type.