CVE-2026-65893

HIGH

CP PLUS EZ-P21 IP Camera <= v4.8.8.1 - Physical Debug Code Execution

Title source: manual
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2026-65893. PoCs published by ivmks74, CyberVinner.

AI-analyzed exploit summary This repository documents a research internship focused on IoT security, firmware reverse engineering, and vulnerability assessment of embedded IP camera firmware. It details the discovery of two CVEs (including CVE-2026-65893) but explicitly states no exploit code or PoC is included, serving as a technical writeup of the research process and outcomes.

Description

This vulnerability exists in CP PLUS EZ-P21 IP Camera due to an insecure debug feature enabled in the firmware. An attacker with physical access could exploit this vulnerability by placing arbitrary code on removable media and triggering their execution through the debug mechanism. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code with elevated privileges on the targeted device.

Exploits (2)

nomisec WRITEUP
by ivmks74 · poc
https://github.com/ivmks74/IIITA-IoT-Security-Research

This repository documents a research internship focused on IoT security, firmware reverse engineering, and vulnerability assessment of embedded IP camera firmware. It details the discovery of two CVEs (including CVE-2026-65893) but explicitly states no exploit code or PoC is included, serving as a technical writeup of the research process and outcomes.

Classification
Writeup 98%
Attack Type
Other
Complexity
Complex
Reliability
Theoretical
Target: embedded IP camera firmware (unspecified version)
No auth needed
Prerequisites: Access to target IoT device firmware · Firmware reverse engineering tools (e.g., Binwalk) · Embedded Linux analysis expertise
mistral-large-3 · analyzed Jul 29, 2026 Full analysis →
nomisec WRITEUP
by CyberVinner · poc
https://github.com/CyberVinner/CP-PLUS-EZ-P21-CVE-2026-65893-65894

This repository provides a detailed technical analysis of two vulnerabilities in CP PLUS EZ-P21 IP Camera (CVE-2026-65893 and CVE-2026-65894). CVE-2026-65893 involves arbitrary code execution via an insecure debug feature requiring physical access, while CVE-2026-65894 involves improper authentication of HTTP endpoints leading to unauthorized access to live video snapshots via brute-force attacks. No exploit code is included.

Classification
Writeup 99%
Attack Type
Rce | Auth Bypass
Complexity
Moderate
Reliability
Theoretical
Target: CP PLUS EZ-P21 IP Camera (firmware version V4.8.8.1)
No auth needed
Prerequisites: Physical access to the device for CVE-2026-65893 · Network access to the device for CVE-2026-65894
mistral-large-3 · analyzed Jul 28, 2026 Full analysis →

References (1)

Core 1
Core References

Scores

CVSS v4 7.0
EPSS 0.0016
EPSS Percentile 5.5%
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-489
Status published
Products (1)
CP-Plus/EZ-P21 IP Camera version v4.8.8.1 and prior
Published Jul 27, 2026
Tracked Since Jul 27, 2026