Weakness
Anviz CX2 Lite and CX7 administrative sessions occur over HTTP, enabling on‑path attackers to sniff credentials and session data, which can be used to compromise the device.
Affected products
- anviz cx7_firmware
- anviz cx7
- anviz cx2_lite_firmware
- anviz cx2_lite
References
Find the bug before an attacker does.
Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.