CVE-2026-32648: Anviz CX2 Lite Firmware

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Anviz CX2 Lite and CX7 are vulnerable to unauthenticated access that discloses debug configuration details (e.g., SSH/RTTY status), assisting attackers in reconnaissance against the device.

Affected products

  • Anviz CX2 Lite Firmware: affected versions not specified
  • Anviz CX7 Firmware: affected versions not specified

Published 2026-04-17. Last modified 2026-06-17.