CVE-2025-30023
CRITICALClient-Server - Authenticated RCE
Title source: llmDescription
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
Scores
CVSS v3
9.0
EPSS
0.0230
EPSS Percentile
84.5%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
published
Affected Products (3)
axis/camera_station
< 5.58.47195
axis/camera_station_pro
< 6.9.47069
axis/device_manager
< 5.32.137
Timeline
Published
Jul 11, 2025
Tracked Since
Feb 18, 2026