Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 21 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Shenzhen Liandian
Shenzhen Liandian v380 Ip Camera |
|
| Vendors & Products |
Shenzhen Liandian
Shenzhen Liandian v380 Ip Camera |
Thu, 18 Jun 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Broken Authorization Leading to Unauthenticated Live Video Exposure on V380 IP Camera |
Thu, 18 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A broken authorization boundary in the RTSP media delivery pipeline of Shenzhen Liandian Communication Technology LTD V380 IP Camera firmware AppFHE1_V1.0.6.020230803 enables unauthenticated network actors to bypass the device’s credential-enforced live-view workflow and directly retrieve real-time video stream data. | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Toreon
Published:
Updated: 2026-06-18T14:54:30.902Z
Reserved: 2026-06-17T13:45:59.689Z
Link: CVE-2026-12527
Updated: 2026-06-18T14:54:24.767Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-20T22:56:04Z