CVE 7.7 HIGH

Brickcom Cameras Missing Authentication for Critical Function_CVE-2026-50245

7.7 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Description

Brickcom cameras allow unauthenticated access to live snapshot images via the /ONVIF endpoint and no authentication is required to retrieve still images from the camera feed.

Basic Information

ID CVE-2026-50245
Source icscert
Published Jun 11, 2026 at 19:48

Affected Product

Vendor Brickcom
Product Cube
Version 3.2.3.5.6
Affected Versions Brickcom Cube 3.2.3.5.6
Brickcom Dome 3.2.3.5.6
Brickcom Bullet 3.2.3.5.6
Brickcom Box 3.2.3.5.6

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.