Weakness
Anviz CX2 Lite and CX7 are vulnerable to unauthenticated POST requests that modify debug settings (e.g., enabling SSH), allowing unauthorized state changes that can facilitate later compromise.
Affected products
- anviz cx7_firmware
- anviz cx7
- anviz cx2_lite_firmware
- anviz cx2_lite
References
Find the bug before an attacker does.
Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.