CVE-2016-15055: Jvc Jvckenwood IP-Camera Vn-t216vpru

High severity, CVSS 8.7. EPSS: 0.9% chance of exploitation in the next 30 days.

JVC VN-T IP-camera models firmware versions up to 2016-08-22 (confirmed on the VN-T216VPRU model) contain a directory traversal vulnerability in the checkcgi endpoint that accepts a user-controlled file parameter. An unauthenticated remote attacker can leverage this vulnerability to read arbitrary files on the device.

Affected products

  • Jvc Jvckenwood IP-Camera Vn-t216vpru: before 2016-08-22 (fixed in 2016-08-22)

Published 2025-11-12. Last modified 2026-06-17.