CVE-2026-65894
Improper Authentication Vulnerability in CP PLUS EZ-P21 IP Camera
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
This vulnerability exists in CP PLUS EZ-P21 IP Camera due to improper authentication of HTTP endpoints. A remote attacker could exploit this vulnerability by conducting brute-force attacks against HTTP endpoint on the targeted device. Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to live video snapshots from the targeted device.
| CWE | CWE-307 |
| Vendor | cp-plus |
| Product | ez-p21 ip camera |
| Published | Jul 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for cp-plus ez-p21 ip camera
Be the first to know when new unknown vulnerabilities affecting cp-plus ez-p21 ip camera are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
CP-Plus / EZ-P21 IP Camera
version v4.8.8.1 and prior
References
Credits
This vulnerability is reported by a team of security researchers including Vishwa V and Sathya Priya S from SRMIST Ramapuram. Tiyyagura Venkata Shesha Shaina Reddy and Isukapalli Venkata Mythreya Kumara Sarma from Vignan University. Deven Lunkad and S. Venkatesan from IIIT Allahabad.