Home

Description

Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has found that it is possible for a non-admin user to remove system files causing a boot loop by redirecting a file deletion when recording video. Axis has released a patched version for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

PUBLISHED Reserved 2025-01-31 | Published 2025-04-23 | Updated 2025-04-23 | Assigner Axis




MEDIUM: 5.9CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H

Problem types

CWE-732: Incorrect Permission Assignment for Critical Resource

Product status

Default status
unaffected

6 (custom) before 6.8
affected

References

www.axis.com/...c/9d/fe/3f/cve-2025-0926pdf-en-US-479105.pdf

cve.org (CVE-2025-0926)

nvd.nist.gov (CVE-2025-0926)

Download JSON