VendorsAxisdevice_managerall versions
Vulnerabilities

Axis Device Manager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2025-30023
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
Published 2025-07-11 · Analyzed
9.0EPSS 0.006
CVE-2025-30025
The communication protocol used between the server process and the service control had a flaw that could lead to a local privilege escalation.
Published 2025-07-11 · Analyzed
7.8EPSS 0.002
CVE-2025-30024
The communication protocol used between client and server had a flaw that could be leveraged to execute a man in the middle attack.
Published 2025-07-11 · Analyzed
6.8EPSS 0.004
CVE-2021-31989
A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions extract a memory dump from the built-in Windows Task Manager application. The memory dump may potentially contain credentials of connected Axis devices.
Published 2021-08-25 · Modified
5.3EPSS 0.004