CVE-2025-0359: High severity Axis AXIS OS vulnerability
During an annual penetration test conducted on behalf of Axis Communication, Truesec discovered a flaw in the ACAP Application framework that allowed applications to access restricted D-Bus methods within the framework. Axis has released patched AXIS OS versions for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0359?
CVE-2025-0359 is classified as a critical vulnerability due to its potential impact on restricted method access within the ACAP Application framework.
How do I fix CVE-2025-0359?
To remediate CVE-2025-0359, upgrade to the patched versions of AXIS OS released by Axis Communication.
What are the affected products of CVE-2025-0359?
CVE-2025-0359 affects Axis AXIS OS and the Axis ACAP Application framework.
Is there a workaround for CVE-2025-0359?
There are no recommended workarounds for CVE-2025-0359 other than applying the available patches.
What could an attacker achieve by exploiting CVE-2025-0359?
Exploiting CVE-2025-0359 could allow an attacker to access restricted D-Bus methods, potentially compromising the system's integrity.