CVE-2026-100298

Élevée8.8Publiée le 29 septembre 2026

In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, two user‑information endpoints can reveal sensitive device and account details under conditions that are not intended for normal operation.

Score CVSS8.8 / 10CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Type de faiblesse (CWE)CWE-522

Articles liés

This product uses the NVD API but is not endorsed or certified by the NVD.

Base de données CVE