CVE-2026-50245: Brickcom Box

High severity, CVSS 7.7. EPSS: 0.2% chance of exploitation in the next 30 days.

Brickcom cameras allow unauthenticated access to live snapshot images via the /ONVIF endpoint and no authentication is required to retrieve still images from the camera feed.

Affected products

Published 2026-06-11. Last modified 2026-06-17.