OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-100298

HIGH · CVSS 8.8 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

The Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4 contains vulnerabilities in two user-information endpoints that can unintentionally expose sensitive device and account information. This high-severity issue (CVSS 8.8) poses a significant risk to users, particularly those managing sensitive data or critical infrastructure. Organizations using this firmware should prioritize immediate remediation to mitigate potential data breaches.

CVE
CVE-2026-100298
Severity
HIGH
CVSS
8.8
EPSS
0.29%

Original NVD Description

In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, two user‑information endpoints can reveal sensitive device and account details under conditions that are not intended for normal operation.