What is CVE-2026-65894?
This critical vulnerability exists in CP PLUS EZ-P21 IP Camera due to improper authentication of HTTP endpoints. A remote attacker can gain unauthorized access by conducting brute-force attacks against the targeted device. Firmware updates from the vendor should be applied, or strong password policies must be enforced.
Azərbaycanca: Bu kritik zəiflik CP PLUS EZ-P21 IP kamerasında HTTP endpoint-lərin zəif autentifikasiyası səbəbindən baş verir. Uzaqdan hücum edən şəxs brute-force hücumları ilə cihaza icazəsiz giriş əldə edə bilər. İstehsalçı tərəfindən proqram təminatı yeniləməsi tətbiq edilməli və ya güclü parol siyasəti təmin olunmalıdır.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
How does CVE-2026-65894 affect the CP PLUS EZ-P21 IP camera?
This critical vulnerability exists due to improper authentication of HTTP endpoints, allowing a remote attacker to gain unauthorized access by conducting brute-force attacks against the device.
What measures should be taken to mitigate CVE-2026-65894?
Firmware updates from the vendor should be applied, or strong password policies must be enforced.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.