Description

Anviz CX2 Lite and CX7 are vulnerable to unauthenticated POST requests that modify debug settings (e.g., enabling SSH), allowing unauthorized state changes that can facilitate later compromise.

INFO

Published Date :

2026-04-17T19:36:29.842Z

Last Modified :

2026-04-17T20:03:18.872Z

Source :

icscert
AFFECTED PRODUCTS

The following products are affected by CVE-2026-40461 vulnerability.

Vendors Products
Anviz
  • Anviz Cx2 Lite Firmware
  • Anviz Cx7 Firmware
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact