MinorCritical vulnerability
CVE-2026-100299 (CVSS 7.0)
NVD · officialPublished Sep 29, 2026Risk 23/100
In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, the device includes a legacy password hash on the serial console that relies on a weak DES‑based encryption.
Technical details
CVSS
7.0
AV:PhysicalAC:LowPR:LowUI:None
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source