VYPR

Device Manager

by Axis

CVEs (4)

  • CVE-2025-30023CriJul 11, 2025
    risk 0.59cvss 9.0epss 0.01

    The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.

  • CVE-2025-30025HigJul 11, 2025
    risk 0.51cvss 7.8epss 0.00

    The communication protocol used between the server process and the service control had a flaw that could lead to a local privilege escalation.

  • CVE-2025-30024MedJul 11, 2025
    risk 0.44cvss 6.8epss 0.00

    The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the middle attack.

  • CVE-2021-31989MedAug 25, 2021
    risk 0.34cvss 5.3epss 0.00

    A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions extract a memory dump from the built-in Windows Task Manager application. The memory dump may potentially contain credentials of connected Axis devices.