AXIS Optimizer was vulnerable to an unquoted search path vulnerability, which could potentially lead to privilege escalation within Microsoft Windows operating system. This vulnerability can only be exploited if the attacker has access to the local Windows machine and sufficient access rights (administrator) to write data into the installation path of AXIS Optimizer.
History

Fri, 14 Nov 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 12 Nov 2025 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Axis
Axis optimizer
Vendors & Products Axis
Axis optimizer

Tue, 11 Nov 2025 07:30:00 +0000

Type Values Removed Values Added
Description AXIS Optimizer was vulnerable to an unquoted search path vulnerability, which could potentially lead to privilege escalation within Microsoft Windows operating system. This vulnerability can only be exploited if the attacker has access to the local Windows machine and sufficient access rights (administrator) to write data into the installation path of AXIS Optimizer.
Weaknesses CWE-428
References
Metrics cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Axis

Published: 2025-11-11T07:16:05.091Z

Updated: 2025-11-14T18:37:31.140Z

Reserved: 2025-09-19T07:20:17.775Z

Link: CVE-2025-10714

cve-icon Vulnrichment

Updated: 2025-11-14T18:37:26.896Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-11T08:15:33.787

Modified: 2025-11-12T16:19:34.210

Link: CVE-2025-10714

cve-icon Redhat

No data.