CameraRisk

Axis Communications Axis Os

cpe:2.3:*:axis:axis_os

Vendor
Axis Communications
Device type
Not derivable from CPE
Published vulnerabilities
36
In CISA KEV
None
Affected versions recorded
45
Data last built
5 September 2026

Security summary

36 published vulnerabilities affect this product according to NVD.

Experimental risk indicator

Components are shown separately and deliberately not combined into a single number. Two of the six inputs below have no public source for any product on this site; a composite built without them would be a guess wearing a decimal point.

Known vulnerability count 36 bar saturates at 20
Highest published severity 8.8 HIGH
Confirmed exploitation no none listed in KEV
Exploitation probability EPSS 1.2% (highest)
Lifecycle status no source
Deployed exposure not measurable from public data

Published vulnerabilities

CVEPublishedCVSS SeverityEPSSFlags
CVE-2026-1185 2026-05-12 8.8 high 0.2% Vendor advisory
CVE-2026-0804 2026-05-12 7.3 high 0.1% Vendor advisory
CVE-2026-0802 2026-05-12 7.3 high 0.4% Vendor advisory
CVE-2026-0541 2026-05-12 7.3 high 0.1% Vendor advisory
CVE-2025-11142 2026-02-10 8.8 high 0.5% Vendor advisory
CVE-2025-8108 2025-11-11 6.7 medium 0.1% Vendor advisory
CVE-2025-6779 2025-11-11 6.7 medium 1.1% Vendor advisory
CVE-2025-6298 2025-11-11 6.7 medium 0.1% Vendor advisory
CVE-2025-5718 2025-11-11 6.8 medium 0.4% Vendor advisory
CVE-2025-5454 2025-11-11 6.7 medium 0.2% Vendor advisory
CVE-2025-5452 2025-11-11 6.6 medium 0.3% Vendor advisory
CVE-2025-4645 2025-11-11 6.7 medium 0.1% Vendor advisory
CVE-2025-3892 2025-08-12 6.7 medium 0.1% Vendor advisory
CVE-2025-30027 2025-08-12 6.7 medium 0.2% Vendor advisory
CVE-2025-0358 2025-06-02 8.8 high 0.2% Vendor advisory
CVE-2025-0324 2025-06-02 8.8 high 0.4% Vendor advisory
CVE-2025-0361 2025-04-08 5.3 medium 0.3% Vendor advisory
CVE-2024-47261 2025-04-08 4.3 medium 0.4% Vendor advisory
CVE-2025-0360 2025-03-04 7.8 high 0.1% Vendor advisory
CVE-2025-0359 2025-03-04 5.5 medium 0.1% Vendor advisory
CVE-2024-47259 2025-03-04 7.1 high 0.5% Vendor advisory
CVE-2024-8160 2024-11-26 2.7 low 0.6% Vendor advisory
CVE-2024-0055 2024-03-19 6.5 medium 0.6% Vendor advisory
CVE-2023-5800 2024-02-05 8.8 high 0.7% Vendor advisory
CVE-2023-5553 2023-11-21 6.8 medium 0.3% Vendor advisory
CVE-2023-21418 2023-11-21 7.1 high 0.7% Vendor advisory
CVE-2023-21417 2023-11-21 7.1 high 0.7% Vendor advisory
CVE-2023-21416 2023-11-21 6.5 medium 0.7% Vendor advisory
CVE-2023-21415 2023-10-16 8.1 high 0.6% Vendor advisory
CVE-2023-21414 2023-10-16 6.8 medium 0.2% Vendor advisory
CVE-2023-21413 2023-10-16 7.2 high 1.2% Vendor advisory
CVE-2023-21405 2023-07-25 6.5 medium 0.3% Vendor advisory
CVE-2023-21404 2023-05-08 5.3 medium 0.3% Vendor advisory
CVE-2021-31988 2021-10-05 8.8 high 1.0% Vendor advisory
CVE-2021-31987 2021-10-05 7.5 high 0.9% Vendor advisory
CVE-2021-31986 2021-10-05 6.8 medium 0.8% Vendor advisory

Affected versions

Version strings recorded by NVD against this product. These are the versions named in CPE match rules, not a complete firmware history — a version absent here has not been cleared, it has simply never been named in a CVE record.

Ranges: < 10.12.199 · < 10.12.206 · < 10.7 · < 10.8 · < 11.4.52 · < 11.6.94 · < 11.7.57 · < 11.8.61 · < 11.9.53 · < 12.1.21 · < 12.10.37 · < 12.10.4 · < 12.2.41 · < 12.2.52 · < 12.3.33 · < 12.3.56 · < 12.4.0 · < 12.5.31 · < 12.5.36 · < 12.6.18 · < 12.6.28 · < 12.6.30 · < 12.6.40 · < 12.6.69 · < 12.6.7 · < 12.7.33 · < 12.7.36 · < 12.9.32 · < 12.9.33 · < 6.50.5.14 · < 6.50.5.15 · <= 10.12.178 · <= 11.5.53 · >= 10.11.55 · >= 10.12.0 · >= 10.5.0 · >= 10.8 · >= 10.9.0 · >= 11.0 · >= 11.0.81 · >= 11.0.89 · >= 11.11.0 · >= 12.0.0 · >= 12.6.54 · >= 6.50.5.3

What this page does not tell you

There is no public dataset of end-of-support dates, default credentials or shipped network services for this product, so those fields are absent rather than estimated. Whether any of these vulnerabilities is exploitable in your deployment depends on firmware version, configuration and network position — none of which is knowable from here.

For the vendor's own advisories, see Axis Communications.

Other Axis Communications products

Vulnerability records from the National Vulnerability Database, matched to this product by CPE. Exploitation status from CISA KEV 2026.09.04. Exploitation probability from FIRST EPSS, 2026-09-04. Product name derived mechanically from the CPE identifier. See methodology.