Vulnerability Details CVE-2025-1056
Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has identified an issue with a specific file that the server is using. A non-admin user can modify this file to either create files or change the content of files in an admin-protected location.
Axis has released a patched version for the highlighted flaw. Please
refer to the Axis security advisory for more information and solution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.7%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2025-1056
-
cpe:2.3:a:axis:camera_station_pro:6.0.25729
-
cpe:2.3:a:axis:camera_station_pro:6.1.26193
-
cpe:2.3:a:axis:camera_station_pro:6.1.26726
-
cpe:2.3:a:axis:camera_station_pro:6.2.2667
-
cpe:2.3:a:axis:camera_station_pro:6.2.29989
-
cpe:2.3:a:axis:camera_station_pro:6.3.31539
-
cpe:2.3:a:axis:camera_station_pro:6.4.35340
-
cpe:2.3:a:axis:camera_station_pro:6.5.35848
-
cpe:2.3:a:axis:camera_station_pro:6.5.37447
-
cpe:2.3:a:axis:camera_station_pro:6.6.38588
-
cpe:2.3:a:axis:camera_station_pro:6.7.40268
-
cpe:2.3:a:axis:camera_station_pro:6.7.41285