CVE-2025-5454 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An ACAP configuration file lacked sufficient input validation, which could allow a path traversal attack leading to potential privilege escalation. This vulnera…
Medium CVSS: 6.4

CVE-2025-5454

An ACAP configuration file lacked sufficient input validation, which could allow a path traversal attack leading to potential privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.
Vendor
Axis
Product
Axis Os
CWE
CWE-35
Yayın Tarihi
2025-11-11 07:15:34
Güncelleme
2025-11-24 17:57:25
Source Identifier
product-security@axis.com
KEV Date Added
-

Kategoriler

Referanslar