CVE-2026-58378: Allwinner h616
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
Allwinner H616 TV Box TV98 has ADB enabled and exposed to the network on production. An attacker could request for ADB authorization and gain root level privileges if the victim allows access.
Affected products
- Allwinner h616: any version
Published 2026-07-09. Last modified 2026-07-21.