CVE-2025-1056: Axis Camera Station Pro

Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has identified an issue with a specific file that the server is using. A non-admin user can modify this file to either create files or change the content of files in an admin-protected location. Axis has released a patched version for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

Affected products

  • Axis Camera Station Pro: before 6.8.43213 (fixed in 6.8.43213)

Published 2025-04-23. Last modified 2026-06-17.