A AegiFlow
HIGHCVSS 8.7

CVE-2026-88259

CVE-2026-88259 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

CareCam CM2507 IP cameras do not require authentication for access to its network video streaming service. An unauthenticated attacker with network access to the affected device could retrieve live camera video.

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.