CVE-2025-12063: Medium severity Axis Camera Station Pro vulnerability
Published Feb 10, 2026
·Updated
An insecure direct object reference allowed a non-admin user to modify or remove certain data objects without having the appropriate permissions.
Affected Software
1 affected component
Axis Camera Station Pro<6.14.10768
Event History
Feb 10, 2026
CVE Published
via MITRE·05:52 AM
Data Sourced
via MITRE·05:52 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12063?
CVE-2025-12063 has been classified as a medium severity vulnerability.
2
How can I fix CVE-2025-12063?
To fix CVE-2025-12063, ensure that proper access controls are implemented to restrict data modification based on user roles.
3
Who is affected by CVE-2025-12063?
Any non-admin users of Axis Camera Station Pro versions prior to 6.14.10768 are affected by CVE-2025-12063.
4
What type of vulnerability is CVE-2025-12063?
CVE-2025-12063 is an insecure direct object reference vulnerability.
5
What data could be compromised due to CVE-2025-12063?
CVE-2025-12063 allows unauthorized modification or removal of certain data objects by non-admin users.