Axis Camera Station and Axis Camera Station Pro Server-Side Request Forgery Vulnerability

Vulnerability

A Server-Side Request Forgery (SSRF) vulnerability has been identified in Axis Camera Station versions 5.32 through 5.58 and in Axis Camera Station Pro versions 6.0 through 6.9. This vulnerability allows authenticated attackers to access internal server resources. The issue was discovered during an internal security assessment.

Impact

Exploitation of this vulnerability could allow an authenticated attacker to access internal resources on the server, potentially leading to unauthorized data exposure or manipulation.

Remediation

Users are advised to update to AXIS Camera Station version 5.59 or AXIS Camera Station Pro version 6.10. The latest versions can be found on the Axis website. For further assistance, contact Axis Technical Support.

Added: Aug 12, 2025, 5:21 AM
Updated: Aug 12, 2025, 5:21 AM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
0.6
exploitability
3.5
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.