7.7
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description
Brickcom cameras allow unauthenticated access to live snapshot images via the /ONVIF endpoint and no authentication is required to retrieve still images from the camera feed.
Basic Information
ID
CVE-2026-50245
Source
icscert
Published
Jun 11, 2026 at 19:48
Affected Product
Vendor
Brickcom
Product
Cube
Version
3.2.3.5.6
Affected Versions
Brickcom Cube 3.2.3.5.6
Brickcom Dome 3.2.3.5.6
Brickcom Bullet 3.2.3.5.6
Brickcom Box 3.2.3.5.6
Brickcom Dome 3.2.3.5.6
Brickcom Bullet 3.2.3.5.6
Brickcom Box 3.2.3.5.6