CVE-2026-1185

A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if an attacker can log in to the Axis device using SSH.
Configurations

Configuration 1 (hide)

cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*

History

19 May 2026, 16:07

Type Values Removed Values Added
References () https://www.axis.com/dam/public/69/df/8d/cve-2026-1185pdf-en-US-530733.pdf - () https://www.axis.com/dam/public/69/df/8d/cve-2026-1185pdf-en-US-530733.pdf - Vendor Advisory
First Time Axis
Axis axis Os
CPE cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*

12 May 2026, 07:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-12 07:16

Updated : 2026-05-19 16:07


NVD link : CVE-2026-1185

Mitre link : CVE-2026-1185

CVE.ORG link : CVE-2026-1185


JSON object : View

Products Affected

axis

  • axis_os
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource