CVE-2026-32649: Milesight Ms-c2964-Rflpc

Medium severity, CVSS 6.8. EPSS: 1.5% chance of exploitation in the next 30 days.

A command injection vulnerability exists in the web server of specific firmware versions of Milesight cameras.

Affected products

Published 2026-04-28. Last modified 2026-07-25.