CyberRota Analysis
AI-GeneratedSJCAM AllWinner Tech products, specifically the SJ4000-Air V1.4C and earlier versions, are vulnerable to arbitrary code execution due to improper handling of crafted FEX files. This critical vulnerability, with a CVSS score of 9.8, allows attackers to potentially gain control over affected devices, posing significant risks to user data and device integrity. Organizations using these products should prioritize immediate remediation to mitigate the threat of exploitation.
CVE
CVE-2026-52656
Severity
CRITICAL
CVSS
9.8
EPSS
0.51%
Original NVD Description
An issue in SJCAM AllWinner Tech products SJ4000-Air V1.4C and before and Whitelabel based v.1.4C and before allows an attacker to execute arbitrary code via a crafted FEX file