6.7
MEDIUM CVSS 3.1
CVE-2025-4645
Axis ACAP Code Execution Vulnerability
Description

An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.

INFO

Published Date :

Nov. 11, 2025, 7:15 a.m.

Last Modified :

Nov. 24, 2025, 5:57 p.m.

Remotely Exploit :

No
Affected Products

The following products are affected by CVE-2025-4645 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Axis axis_os
2 Axis a1210_\(-b\)
3 Axis a1601
4 Axis a1610_\(-b\)
5 Axis m4317-plve
6 Axis m4318-plve
7 Axis m4327-p
8 Axis m4328-p
9 Axis p1467-le
10 Axis p1468-le
11 Axis p1468-xle
12 Axis p3265-lv
13 Axis p3265-lve
14 Axis p3265-v
15 Axis p3267-lv
16 Axis p3267-lve
17 Axis p3268-lv
18 Axis p3268-lve
19 Axis p3827-pve
20 Axis p4705-plve
21 Axis p4707-plve
22 Axis q1656
23 Axis q1656-b
24 Axis q1656-be
25 Axis q1656-ble
26 Axis q1656-dle
27 Axis q1656-le
28 Axis q1961-te
29 Axis q2101-te
30 Axis q3536-lve
31 Axis q3538-lve
32 Axis q3626-ve
33 Axis q3628-ve
34 Axis xfq1656
35 Axis a8207-ve_mk_ii
36 Axis a1214
37 Axis a1710-b
38 Axis a1810-b
39 Axis c1110-e
40 Axis c1111-e
41 Axis c1210-e
42 Axis c1211-e
43 Axis c1310-e_mk_ii
44 Axis c1410_mk_ii
45 Axis c1510
46 Axis c1511
47 Axis c1610-ve
48 Axis c1710
49 Axis c1720
50 Axis c6110
51 Axis c8110
52 Axis c8210
53 Axis d1110
54 Axis d201-s_xpt_q6075
55 Axis d2110-ve
56 Axis d2210-ve
57 Axis d3110_mk_ii
58 Axis d4100-ve_mk_ii
59 Axis d4200-ve
60 Axis d6310
61 Axis excam_xf_q1785
62 Axis excam_xpt_q6075
63 Axis f9104-b_main_unit
64 Axis f9104-b_mk_ii_main_unit
65 Axis f9111-r_mk_ii_main_unit
66 Axis f9111_main_unit
67 Axis f9111_mk_ii_main_unit
68 Axis f9114-b-r_mk_ii_main_unit
69 Axis f9114-b_main_unit
70 Axis f9114-bt
71 Axis f9114_main_unit
72 Axis fa51
73 Axis fa51-b
74 Axis fa54
75 Axis i7010-safety
76 Axis i7010-ve
77 Axis i7020
78 Axis i8016-lve
79 Axis i8116-e
80 Axis i8307-ve
81 Axis m1055-l
82 Axis m1075-l
83 Axis m1135
84 Axis m1135-e_mk_ii
85 Axis m1137
86 Axis m1137-e_mk_ii
87 Axis m2035-le
88 Axis m2036-le
89 Axis m3057-plr_mk_ii
90 Axis m3085-v
91 Axis m3086-v
92 Axis m3086-v_mic
93 Axis m3088-v
94 Axis m3125-lve
95 Axis m3126-lve
96 Axis m3128-lve
97 Axis m3215-lve
98 Axis m3216-lve
99 Axis m3905-r
100 Axis m4215-lv
101 Axis m4215-v
102 Axis m4216-lv
103 Axis m4216-v
104 Axis m4218-lv
105 Axis m4218-v
106 Axis m4225-lve
107 Axis m4227-lve
108 Axis m4228-lve
109 Axis m4308-ple
110 Axis m4317-plr
111 Axis m4318-plr
112 Axis m5000
113 Axis m5000-g
114 Axis m5074
115 Axis m5075
116 Axis m5075-g
117 Axis m5526-e
118 Axis m7104
119 Axis m7116
120 Axis p1245_mk_ii
121 Axis p1265_mk_ii
122 Axis p1275_mk_ii
123 Axis p1385
124 Axis p1385-b
125 Axis p1385-be
126 Axis p1385-e
127 Axis p1387
128 Axis p1387-b
129 Axis p1387-be
130 Axis p1387-le
131 Axis p1388
132 Axis p1388-b
133 Axis p1388-be
134 Axis p1388-le
135 Axis p1465-le
136 Axis p1465-le-3
137 Axis p1475-le
138 Axis p1518-e
139 Axis p1518-le
140 Axis p3265-lve-3
141 Axis p3267-lve_mic
142 Axis p3268-slve
143 Axis p3275-lv
144 Axis p3275-lve
145 Axis p3277-lv
146 Axis p3277-lve
147 Axis p3278-lv
148 Axis p3278-lve
149 Axis p3285-lv
150 Axis p3285-lve
151 Axis p3287-lv
152 Axis p3287-lve
153 Axis p3288-lv
154 Axis p3288-lve
155 Axis p3735-ple
156 Axis p3737-ple
157 Axis p3738-ple
158 Axis p3747-plve
159 Axis p3748-plve
160 Axis p3818-pve
161 Axis p3905-r_mk_iii
162 Axis p3925-lre
163 Axis p3925-r
164 Axis p3935-lr
165 Axis p4708-plve
166 Axis p5654-e
167 Axis p5654-e_mk_ii
168 Axis p5655-e
169 Axis p5676-le
170 Axis p7304
171 Axis p7316
172 Axis p9117-pv
173 Axis q1615-le_mk_iii
174 Axis q1615_mk_iii
175 Axis q1686-dle
176 Axis q1715
177 Axis q1728
178 Axis q1728-le
179 Axis q1798-le
180 Axis q1800-le
181 Axis q1800-le-3
182 Axis q1805-le
183 Axis q1806-le
184 Axis q1808-le
185 Axis q1809-le
186 Axis q1961-xte
187 Axis q1971-e
188 Axis q1972-e
189 Axis q2111-e
190 Axis q2112-e
191 Axis q3538-slve
192 Axis q3546-lve
193 Axis q3548-lve
194 Axis q3556-lve
195 Axis q3558-lve
196 Axis q3819-pve
197 Axis q3839-pve
198 Axis q3839-spve
199 Axis q4809-pve
200 Axis q6020-e
201 Axis q6074
202 Axis q6074-e
203 Axis q6075
204 Axis q6075-e
205 Axis q6075-s
206 Axis q6075-se
207 Axis q6078-e
208 Axis q6135-le
209 Axis q6225-le
210 Axis q6300-e
211 Axis q6315-le
212 Axis q6318-le
213 Axis q6355-le
214 Axis q6358-le
215 Axis q8615-e
216 Axis q8752-e
217 Axis q8752-e_mk_ii
218 Axis q9307-lv
219 Axis s3008
220 Axis s3008_mk_ii
221 Axis s3016
222 Axis s4000
223 Axis v5925
224 Axis v5938
225 Axis w100
226 Axis w101
227 Axis w102
228 Axis w110
229 Axis w120
230 Axis w401
231 Axis xc1311
232 Axis xf40-q1785
233 Axis xpq1785
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 3.1 MEDIUM f2daf9a0-02c2-4b83-a01d-63b3b304b807
CVSS 3.1 MEDIUM [email protected]
Solution
Secure the device by disabling unsigned application installations and validating configurations.
  • Disable installation of unsigned applications.
  • Validate all ACAP configuration files.
  • Apply vendor patches for input validation.
  • Restrict application installation permissions.
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2025-4645.

URL Resource
https://www.axis.com/dam/public/69/47/ff/cve-2025-4645pdf-en-US-504211.pdf Vendor Advisory
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2025-4645 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2025-4645 weaknesses.

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2025-4645 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2025-4645 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • Initial Analysis by [email protected]

    Nov. 24, 2025

    Action Type Old Value New Value
    Added CPE Configuration AND OR *cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:* versions from (including) 12.0.0 up to (excluding) 12.6.7 OR cpe:2.3:h:axis:a1210_(-b):-:*:*:*:*:*:*:* cpe:2.3:h:axis:a1601:-:*:*:*:*:*:*:* cpe:2.3:h:axis:a1610_(-b):-:*:*:*:*:*:*:* cpe:2.3:h:axis:a8207-ve_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4327-p:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4328-p:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4317-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1467-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1468-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1468-xle:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3265-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3265-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3265-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3267-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3267-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3268-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3268-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3827-pve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:a1710-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:a1810-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1110-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1111-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1210-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1211-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1310-e_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1410_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4318-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p4705-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p4707-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656-be:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656-ble:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656-dle:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1656-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1961-te:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q2101-te:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3536-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3538-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3626-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3628-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:xfq1656:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1510:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1511:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1610-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1710:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c1720:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c6110:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c8110:-:*:*:*:*:*:*:* cpe:2.3:h:axis:c8210:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d1110:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d2110-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d2210-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d3110_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d4100-ve_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d4200-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d6310:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9104-b_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9104-b_mk_ii_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9111-r_mk_ii_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9111_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9111_mk_ii_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9114-b-r_mk_ii_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9114-b_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9114-bt:-:*:*:*:*:*:*:* cpe:2.3:h:axis:f9114_main_unit:-:*:*:*:*:*:*:* cpe:2.3:h:axis:fa51:-:*:*:*:*:*:*:* cpe:2.3:h:axis:fa51-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:fa54:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i7010-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i7020:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i8016-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i8116-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i8307-ve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1055-l:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1075-l:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1135:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1135-e_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1137:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m1137-e_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m2035-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m2036-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3057-plr_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3085-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3086-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3086-v_mic:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3088-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3125-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3126-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3128-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:a1214:-:*:*:*:*:*:*:* cpe:2.3:h:axis:d201-s_xpt_q6075:-:*:*:*:*:*:*:* cpe:2.3:h:axis:excam_xf_q1785:-:*:*:*:*:*:*:* cpe:2.3:h:axis:excam_xpt_q6075:-:*:*:*:*:*:*:* cpe:2.3:h:axis:i7010-safety:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3215-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3216-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m3905-r:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4215-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4215-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4216-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4216-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4218-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4218-v:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4225-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4227-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4228-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4308-ple:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4317-plr:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m4318-plr:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5000:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5000-g:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5074:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5075:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5075-g:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m5526-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m7104:-:*:*:*:*:*:*:* cpe:2.3:h:axis:m7116:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1245_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1265_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1275_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1385:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1385-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1385-be:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1385-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1387:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1387-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1387-be:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1387-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1388:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1388-b:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1388-be:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1388-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1465-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1465-le-3:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1475-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1518-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p1518-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3265-lve-3:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3267-lve_mic:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3268-slve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3275-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3275-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3277-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3277-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3278-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3278-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3285-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3285-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3287-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3287-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3288-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3288-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3735-ple:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3737-ple:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3738-ple:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3747-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3748-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3818-pve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3905-r_mk_iii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3925-lre:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3925-r:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p3935-lr:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p4708-plve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p5654-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p5654-e_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p5655-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p5676-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p7304:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p7316:-:*:*:*:*:*:*:* cpe:2.3:h:axis:p9117-pv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1615-le_mk_iii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1615_mk_iii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1686-dle:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1715:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1728:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1728-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1798-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1800-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1800-le-3:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1805-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1806-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1808-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1809-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1961-xte:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1971-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q1972-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q2111-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q2112-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3538-slve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3546-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3548-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3556-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3558-lve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3819-pve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3839-pve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q3839-spve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q4809-pve:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6020-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6074:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6074-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6075:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6075-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6075-s:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6075-se:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6078-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6135-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6225-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6300-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6315-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6318-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6355-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q6358-le:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q8615-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q8752-e:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q8752-e_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:q9307-lv:-:*:*:*:*:*:*:* cpe:2.3:h:axis:s3008:-:*:*:*:*:*:*:* cpe:2.3:h:axis:s3008_mk_ii:-:*:*:*:*:*:*:* cpe:2.3:h:axis:s3016:-:*:*:*:*:*:*:* cpe:2.3:h:axis:s4000:-:*:*:*:*:*:*:* cpe:2.3:h:axis:v5925:-:*:*:*:*:*:*:* cpe:2.3:h:axis:v5938:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w100:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w101:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w102:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w110:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w120:-:*:*:*:*:*:*:* cpe:2.3:h:axis:w401:-:*:*:*:*:*:*:* cpe:2.3:h:axis:xc1311:-:*:*:*:*:*:*:* cpe:2.3:h:axis:xf40-q1785:-:*:*:*:*:*:*:* cpe:2.3:h:axis:xpq1785:-:*:*:*:*:*:*:*
    Added Reference Type Axis Communications AB: https://www.axis.com/dam/public/69/47/ff/cve-2025-4645pdf-en-US-504211.pdf Types: Vendor Advisory
  • New CVE Received by [email protected]

    Nov. 11, 2025

    Action Type Old Value New Value
    Added Description An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.
    Added CVSS V3.1 AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-1287
    Added Reference https://www.axis.com/dam/public/69/47/ff/cve-2025-4645pdf-en-US-504211.pdf
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
Vulnerability Scoring Details
Base CVSS Score: 6.7
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact