CVE-2026-100295

Summary

In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, an internal debug interface can be enabled through an undocumented pathway, exposing functions not intended for normal operation. When activated, this interface allows actions that could unintentionally provide elevated system access.

Affected Software

VendorProductVersion RangeStatus
AnjvisionYSSD-RTMP-H5Version 3.3.2.4 build 2024-12-26affected

Weaknesses

  • CWE-489: CWE-489 Active debug code

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References