CVE-2025-30025
Published Jul 11, 2025The communication protocol used between the server process and the service control had a flaw that could lead to a local privilege escalation.
- evidence mentions
- 1
- Buzz score
- 11.9
Vendor/product archive
4 CVEs tagged to axis / device_manager — 1 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.
The communication protocol used between the server process and the service control had a flaw that could lead to a local privilege escalation.
The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the middle attack.
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions extract a memory dump from the built-in Windows Task Manager…