Anviz CX2 Lite and CX7 are vulnerable to unauthenticated POST requests that modify debug
settings (e.g., enabling SSH), allowing unauthorized state changes that
can facilitate later compromise.
References
Configurations
No configuration.
History
17 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-17 20:16
Updated : 2026-04-20 19:05
NVD link : CVE-2026-40461
Mitre link : CVE-2026-40461
CVE.ORG link : CVE-2026-40461
JSON object : View
Products Affected
No product.
CWE
CWE-306
Missing Authentication for Critical Function
