OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-47097

HIGH · CVSS 7.5 EPSS 0.38% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

The AJA HELO Plus firmware versions prior to 2.1.7 are vulnerable to an information disclosure flaw that allows unauthenticated attackers to decrypt sensitive diagnostics bundles due to a static AES passphrase embedded in the firmware. By reverse engineering the firmware, attackers can recover this passphrase and access sensitive server information from the unauthenticated diagnostics endpoint. Organizations using affected devices should prioritize patching to mitigate the risk of exposing critical data.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-47097
Severity
HIGH
CVSS
7.5
EPSS
0.38%

Original NVD Description

AJA HELO Plus firmware before 2.1.7 contains an information disclosure vulnerability that allows unauthenticated attackers to decrypt sensitive diagnostics bundles by exploiting a static AES passphrase embedded in obfuscated form within the firmware. Attackers can reverse engineer the publicly available firmware image to recover the shared passphrase and decrypt diagnostics export bundles retrieved from the unauthenticated diagnostics endpoint on any affected device, exposing highly sensitive server information.