CVE-2026-100295

Medium6.3Published on September 29, 2026

In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, an internal debug interface can be enabled through an undocumented pathway, exposing functions not intended for normal operation. When activated, this interface allows actions that could unintentionally provide elevated system access.

CVSS score6.3 / 10CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Weakness type (CWE)CWE-489

Related articles

This product uses the NVD API but is not endorsed or certified by the NVD.

CVE database