What is CVE-2026-4757?
CVE-2026-4757 is a critical vulnerability in the VAPIX API used by AXIS network cameras, where improper input validation could allow code execution and privilege escalation after authenticating with an administrator-privileged service account. Affected devices should be urgently patched with the official fix from the vendor.
Azərbaycanca: CVE-2026-4757, AXIS şəbəkə kameralarında istifadə olunan VAPIX API-də administrator hesabı ilə autentifikasiya tələb edən, düzgün olmayan giriş yoxlaması səbəbindən uzaqdan kod icrasına və imtiyaz yüksəldilməsinə səbəb ola bilən kritik bir boşluqdur. Administrator səviyyəli xidmət hesabı ilə istismar edilə bildiyi üçün təsirə məruz qalan cihazlarda dərhal rəsmi yamaq tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-20
FAQ2
What devices does CVE-2026-4757 affect?
CVE-2026-4757 affects the VAPIX API used in AXIS network cameras.
What level of account is required to exploit this vulnerability?
Exploiting CVE-2026-4757 requires authentication with an administrator-privileged service account.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.