AllCyberNews

CVE-2026-68950

Use of Hard-coded Credentials in Digital Watchdog VMAX DVR and NVR Product Lineups

CVSS 8.7 high · Digital Watchdog VMAX A1 G4 DVR · published 2026-09-15

The affected products use hard-coded credentials, which could allow an attacker to run the ftpd service as root, providing remote root file access where FTP is reachable.

Coverage 1 source

  1. 2026-09-15 CISA Cybersecurity Advisories high Digital Watchdog VMAX DVR and NVR Product Lineups

    Multiple vulnerabilities in Digital Watchdog VMAX DVR and NVR products could allow attackers to gain full administrative control.

Mentioned with

CVE-2026-66372 CVE-2026-66887 CVE-2026-66890 CVE-2026-68070 CVE-2026-68953

Also covered