CVE-2025-30025

Severity CVSS v4.0:
MEDIUM
Type:
CWE-502 Deserialization of Untrusted Dat
Publication date:
11/07/2025
Last modified:
23/01/2026

Description

The communication protocol used between the<br /> server process and the service control had a flaw that could lead to a local privilege escalation.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:axis:camera_station_pro:*:*:*:*:*:*:*:* 6.8.43213 (excluding)
cpe:2.3:a:axis:device_manager:*:*:*:*:*:*:*:* 5.32.137 (excluding)