CVE-2025-0361

During an annual penetration test conducted on behalf of Axis Communications, Truesec discovered a flaw in the VAPIX Device Configuration framework that allowed for unauthenticated username enumeration through the VAPIX Device Configuration SSH Management API.
Configurations

No configuration.

History

No history.

Information

Published : 2025-04-08 06:15

Updated : 2025-04-08 18:13


NVD link : CVE-2025-0361

Mitre link : CVE-2025-0361

CVE.ORG link : CVE-2025-0361


JSON object : View

Products Affected

No product.

CWE
CWE-203

Observable Discrepancy