Malacupa
3 записей с упоминанием · 2 за 12 месяцев · 0 в CISA KEV
Имена — свободный текст из записей CNA; один человек может встречаться в разных написаниях. Напишите нам для исправления.
Записи с упоминанием
Исследователи| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
28Наблюдать | CVE-2026-4757Эксплойта нет | A VAPIX API parameter had improper input validation which could allow code execution and potentially lead to a privilege escalation.axis communications ab · axis os · CWE-732 | Высокая7,2 | — | 0,6 % | 11 авг. 2026 г. |
25Наблюдать | CVE-2025-9055Эксплойта нет | The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privileged user to gain Linux Root privilegesaxis communications ab · axis os · CWE-250 | Средняя6,4 | — | 0,1 % | 11 нояб. 2025 г. |
35Наблюдать | CVE-2025-0324Proof of concept | The VAPIX Device Configuration framework allowed a privilege escalation, enabling a lower-privileged user to gain administrator privileges.axis · axis os · CWE-791 | Высокая8,8 | — | 0,4 % | 2 июн. 2025 г. |
- CVE-2026-475728Наблюдать
A VAPIX API parameter had improper input validation which could allow code execution and potentially lead to a privilege escalation.
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %axis communications ab · axis os11 авг. 2026 г.
- CVE-2025-905525Наблюдать
The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privileged user to gain Linux Root privileges
СредняяCVSS 6,4Эксплойта нетEPSS 0 %axis communications ab · axis os11 нояб. 2025 г.
- CVE-2025-032435Наблюдать
The VAPIX Device Configuration framework allowed a privilege escalation, enabling a lower-privileged user to gain administrator privileges.
ВысокаяCVSS 8,8Proof of conceptEPSS 0 %axis · axis os2 июн. 2025 г.