AllCyberNews

CVE-2026-66890

Use of Hard-coded Credentials in Digital Watchdog VMAX DVR and NVR Product Lineups

CVSS 9.4 critical · Digital Watchdog VMAX A1 G4 DVR · published 2026-09-15

The affected products use hard-coded credentials, which could allow remote access to files with root privileges where FTP is reachable.

Coverage 1 source

  1. 2026-09-15 CISA Cybersecurity Advisories high Digital Watchdog VMAX DVR and NVR Product Lineups

    Multiple vulnerabilities in Digital Watchdog VMAX DVR and NVR products could allow attackers to gain full administrative control.

Mentioned with

CVE-2026-66372 CVE-2026-66887 CVE-2026-68070 CVE-2026-68950 CVE-2026-68953

Also covered