CVE-2026-35061
MEDIUMAnviz Products Missing Authorization
Title source: cnaDescription
Anviz CX7 Firmware is vulnerable to the most recently captured test photo that can be retrieved without authentication, revealing sensitive operational imagery.
Scores
CVSS v3
5.3
EPSS
0.0006
EPSS Percentile
17.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Details
CWE
CWE-862
Status
published
Products (1)
Anviz/Anviz CX7 Firmware
All versions
Published
Apr 17, 2026
Tracked Since
Apr 18, 2026