Stats Digest Feeds
← Back to all CVEs

CVE-2026-31927

MEDIUM NVD
CVSS Score 4.9
Severity MEDIUM
Published Apr 17, 2026
Vendor unknown

Description

Anviz CX7 Firmware is vulnerable to an authenticated CSV upload which allows path traversal to overwrite arbitrary files (e.g., /etc/shadow), enabling unauthorized SSH access when combined with debug‑setting changes

References