CVE-2026-68070

Summary

The affected products are missing authentication for a critical function, which could allow an attacker to run as root and pass received bytes directly to a system command.

Affected Software

VendorProductVersion RangeStatus
Digital WatchdogVMAX A1 G4 DVRAllaffected
Digital WatchdogVMAX IP G4 NVRAllaffected
Digital WatchdogVMAX A1 PLUSAllaffected
Digital WatchdogVA1G4 RecorderAllaffected
Digital WatchdogVG4 RecorderAllaffected

Weaknesses

  • CWE-306: CWE-306 Missing authentication for critical function

References