CVE-2026-33569: Anviz CX2 Lite Firmware
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Anviz CX2 Lite and CX7 administrative sessions occur over HTTP, enabling on‑path attackers to sniff credentials and session data, which can be used to compromise the device.
Affected products
- Anviz CX2 Lite Firmware: affected versions not specified
- Anviz CX7 Firmware: affected versions not specified
Published 2026-04-17. Last modified 2026-06-17.