CVE-2026-0541: Input Validation
ACAP applications can gain elevated privileges due to improper input validation during the installation process, potentially leading to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0541?
CVE-2026-0541 has a high severity level as it allows for privilege escalation through improper input validation during the installation of ACAP applications.
How do I fix CVE-2026-0541?
To fix CVE-2026-0541, ensure that your Axis device is configured to disallow the installation of unsigned ACAP applications.
What kind of devices are affected by CVE-2026-0541?
CVE-2026-0541 affects Axis devices that utilize the Axis Camera Application Platform (ACAP) and allow the installation of unsigned applications.
Can CVE-2026-0541 be exploited remotely?
CVE-2026-0541 can potentially be exploited if an attacker has access to the Axis device and it is misconfigured to allow the installation of unsigned ACAP applications.
What are the potential consequences of CVE-2026-0541?
Exploitation of CVE-2026-0541 can lead to unauthorized access and control over the affected Axis device, resulting in a security breach.