CVE-2025-7622

During an internal security assessment, a Server-Side Request Forgery (SSRF) vulnerability that allowed an authenticated attacker to access internal resources on the server was discovered.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:axis:camera_station:*:*:*:*:*:*:*:*
cpe:2.3:a:axis:camera_station_pro:*:*:*:*:*:*:*:*

History

13 Jan 2026, 18:46

Type Values Removed Values Added
CPE cpe:2.3:a:axis:camera_station:*:*:*:*:*:*:*:*
cpe:2.3:a:axis:camera_station_pro:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.7
References () https://www.axis.com/dam/public/c5/9a/3c/cve-2025-7622pdf-en-US-492761.pdf - () https://www.axis.com/dam/public/c5/9a/3c/cve-2025-7622pdf-en-US-492761.pdf - Vendor Advisory
First Time Axis camera Station
Axis
Axis camera Station Pro

12 Aug 2025, 14:25

Type Values Removed Values Added
Summary
  • (es) Durante una evaluación de seguridad interna, se descubrió una vulnerabilidad Server-Side Request Forgery (SSRF) que permitía a un atacante autenticado acceder a recursos internos del servidor.

12 Aug 2025, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-12 05:15

Updated : 2026-01-13 18:46


NVD link : CVE-2025-7622

Mitre link : CVE-2025-7622

CVE.ORG link : CVE-2025-7622


JSON object : View

Products Affected

axis

  • camera_station
  • camera_station_pro
CWE
CWE-918

Server-Side Request Forgery (SSRF)