6.4
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Description
The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privileged user to gain Linux Root privileges. This flaw can only be exploited after authenticating with an administrator-privileged service account.
Basic Information
ID
CVE-2025-9055
Source
Axis
Published
Nov 11, 2025 at 07:31
Affected Product
Vendor
Axis Communications AB
Product
AXIS OS
Version
12.0.0
Affected Versions
Axis Communications AB AXIS OS 12.0.0