CVE-2026-1185HIGH 8.8EPSS p13.1%
CVE-2026-1185CVE-2026-1185
Description
A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if an attacker can log in to the Axis device using SSH.
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.23% probability of exploitation · percentile 13.1% · 2026-06-19T12:03:05Z |
| Published | 2026-05-12 |
| Last modified | 2026-05-19 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Incorrect Permission Assignment for Critical Resourcecwe-732 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.