Home/Product/axis camera station pro
Product

axis camera station pro

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-12063
< 6.14.10768
An insecure direct object reference allowed a non-admin user to modify or remove certain data objects without having the appropria
5.7MEDIUM
CVE-2025-13064
< 6.14.10768
A server-side injection was possible for a malicious admin to manipulate the application to include a malicious script which is ex
4.5MEDIUM
CVE-2025-12757
< 6.14.10768
An AXIS Camera Station Pro feature can be exploited in a way that allows a non-admin user to view information they are not permitt
4.6MEDIUM
CVE-2025-11547
< 6.13.55835
AXIS Camera Station Pro contained a flaw to perform a privilege escalation attack on the server as a non-admin user.
7.8HIGH
CVE-2025-7622
>= 6.0.25729 and < 6.10.49500
During an internal security assessment, a Server-Side Request Forgery (SSRF) vulnerability that allowed an authenticated attacker
5.7MEDIUM
CVE-2025-30026
>= 6.0.25729 and < 6.9.47069
The AXIS Camera Station Server had a flaw that allowed to bypass authentication that is normally required.
9.8CRITICAL
CVE-2025-30025
< 6.8.43213
The communication protocol used between the server process and the service control had a flaw that could lead to a local privilege
7.8HIGH
CVE-2025-30023
< 6.9.47069
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote
9.0CRITICAL
CVE-2025-1056
< 6.8.43213
Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has identified an issue with a specific file that the server is
6.1MEDIUM
CVE-2025-0926
< 6.8.43213
Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has found that it is possible for a non-admin user to remove sys
5.9MEDIUM
CVE-2024-7696
< 6.5.35848
Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program, has found that it is possible for an authenticated malicious cli
6.3MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin