Malacupa
3 credited records · 2 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
28Monitor | CVE-2026-4757No exploit | A VAPIX API parameter had improper input validation which could allow code execution and potentially lead to a privilege escalation.axis communications ab · axis os · CWE-732 | High7.2 | — | 0.6% | Aug 11, 2026 |
25Monitor | CVE-2025-9055No exploit | The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privileged user to gain Linux Root privilegesaxis communications ab · axis os · CWE-250 | Medium6.4 | — | 0.1% | Nov 11, 2025 |
35Monitor | CVE-2025-0324Proof of concept | The VAPIX Device Configuration framework allowed a privilege escalation, enabling a lower-privileged user to gain administrator privileges.axis · axis os · CWE-791 | High8.8 | — | 0.4% | Jun 2, 2025 |
- CVE-2026-475728Monitor
A VAPIX API parameter had improper input validation which could allow code execution and potentially lead to a privilege escalation.
HighCVSS 7.2No exploitEPSS 1%axis communications ab · axis osAug 11, 2026
- CVE-2025-905525Monitor
The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privileged user to gain Linux Root privileges
MediumCVSS 6.4No exploitEPSS 0%axis communications ab · axis osNov 11, 2025
- CVE-2025-032435Monitor
The VAPIX Device Configuration framework allowed a privilege escalation, enabling a lower-privileged user to gain administrator privileges.
HighCVSS 8.8Proof of conceptEPSS 0%axis · axis osJun 2, 2025