CVE-2026-1185: Input Validation
A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if an attacker can log in to the Axis device using SSH.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1185?
CVE-2026-1185 is classified as a high-severity vulnerability due to the potential for code execution and privilege escalation.
How do I fix CVE-2026-1185?
To fix CVE-2026-1185, ensure the Axis device is updated to the latest firmware version, which addresses the input validation issue.
Who is affected by CVE-2026-1185?
CVE-2026-1185 affects users of Axis devices that are accessible via SSH and have the vulnerable configuration file.
What are the risks associated with CVE-2026-1185?
The risks of CVE-2026-1185 include unauthorized code execution, leading to potential loss of data integrity and unauthorized access.
Can CVE-2026-1185 be remotely exploited?
CVE-2026-1185 cannot be exploited remotely; an attacker must have valid SSH login credentials to the Axis device.