5.4
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Description
A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if an attacker canΒ log in to the Axis device using SSH.
Basic Information
ID
CVE-2026-1185
Source
Axis
Published
May 12, 2026 at 05:49
Affected Product
Vendor
Axis Communications AB
Product
AXIS OS
Version
12.0.0
Affected Versions
Axis Communications AB AXIS OS 12.0.0