HIGH
CVE-2026-4757
CVSS
7.2
Description
A VAPIX API parameter had improper input validation which could allow code execution and potentially lead to a privilege escalation. This flaw can only be exploited after authenticating with an administrator-privileged service account.
Weakness (CWE)
CWE-732
Incorrect Permission Assignment
EPSS Score
0.39%
Probability of exploitation in next 30 days
32.9th percentile
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.