Vulnerability Details CVE-2025-0926
Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has found that it is possible for a non-admin user to remove system files causing a boot loop by redirecting a file deletion when recording video.
Axis has released a patched version for the highlighted flaw. Please
refer to the Axis security advisory for more information and solution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.8%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2025-0926
-
cpe:2.3:a:axis:camera_station_pro:6.0.25729
-
cpe:2.3:a:axis:camera_station_pro:6.1.26193
-
cpe:2.3:a:axis:camera_station_pro:6.1.26726
-
cpe:2.3:a:axis:camera_station_pro:6.2.2667
-
cpe:2.3:a:axis:camera_station_pro:6.2.29989
-
cpe:2.3:a:axis:camera_station_pro:6.3.31539
-
cpe:2.3:a:axis:camera_station_pro:6.4.35340
-
cpe:2.3:a:axis:camera_station_pro:6.5.35848
-
cpe:2.3:a:axis:camera_station_pro:6.5.37447
-
cpe:2.3:a:axis:camera_station_pro:6.6.38588
-
cpe:2.3:a:axis:camera_station_pro:6.7.40268
-
cpe:2.3:a:axis:camera_station_pro:6.7.41285