CVE-2025-0324

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/06/2025
Last modified:
15/01/2026

Description

The VAPIX Device Configuration framework allowed a privilege escalation, enabling a lower-privileged user to gain administrator privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:* 12.0.0 (including) 12.3.33 (excluding)
cpe:2.3:o:axis:axis_os_2024:*:*:*:*:lts:*:*:* 11.8.0 (including) 11.11.140 (excluding)