CVE-2026-82988
N/A
N/A
Summary
There exists an arbitrary file download in vCast APK delivery mechanism in ViewSonic ViewBoard unknown allows a remote, unauthenticated attacker to trigger unprivileged APK installation via serving a malicious APK URL through an unauthenticated download endpoint
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Viewsonic | vCast | v0.0.0 <= v3.2.715 | affected |
Weaknesses
- CWE-287 Improper Authentication
- CWE-434 Unrestricted Upload of File with Dangerous Type
- CWE-502 Deserialization of Untrusted Data
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.