CVE-2026-40461
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Vulnerability Description
Anviz CX2 Lite and CX7 are vulnerable to unauthenticated POST requests that modify debug
settings (e.g., enabling SSH), allowing unauthorized state changes that
can facilitate later compromise.
settings (e.g., enabling SSH), allowing unauthorized state changes that
can facilitate later compromise.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-306
Source
NVD
Vendor
Anviz
Product
Anviz CX7 Firmware, Anviz CX2 Lite Firmware
Discussion (0)
Add Comment
No comments yet. Be the first!