CVE-2026-5304 - CERT CVE
ID CVE-2026-5304
Sažetak An ACAP configuration file lacks input validation, which could potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.
Reference
CVSS
Base: 5.7
Impact: 5.2
Exploitability:0.5
Pristup
VektorSloženostAutentikacija
NETWORK HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N
Zadnje važnije ažuriranje 11-08-2026 - 15:17
Objavljeno 11-08-2026 - 06:17