CVE-2026-2564Disclosure

LOWCVSS 9.2 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security flaw has been discovered in Intelbras VIP 3260 Z IA 2.840.00IB005.0.T. Affected by this vulnerability is an unknown functionality of the file /OutsideCmd. The manipulation results in weak password recovery. It is possible to launch the attack remotely. Attacks of this nature are highly complex. The exploitation appears to be difficult. It is recommended to upgrade the affected component.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-640

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 2 mentions (2026-02-16); latest day: 1
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-02-15: 1Mentions · 2026-02-16: 2Mentions · 2026-02-17: 1Technical Details · 2026-02-15: 1Technical Details · 2026-02-17: 102-1502-1602-17
Signal classification1 categories
Disclosure
4100.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-151
Disclosure1
2026-02-162
Disclosure2
2026-02-171
Disclosure1
Full discourse4 posts
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Disclosure

    🚨 CRITICAL: Intelbras VIP 3260 Z IA flaw lets attackers remotely recover passwords via weak password recovery. No user interaction needed! Restrict access & monitor traffic now. https://radar.offseq.com/threat/cve-2026-2564-weak-password-recovery-in-intelbras--15b4ad92 #OffSeq... https://t.co/I8mEvQ6FyU

    Post summary

    Alert highlights a critical flaw in Intelbras VIP 3260 Z IA that enables remote password recovery through weak password recovery without user interaction. No PoC, exploit, or patch is referenced in the tweet.

    0000033
    265 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-2564 - High A security flaw has been discovered in Intelbras VIP 3260 Z IA 2.840.00IB005.0.T. Affected by this vulnerability is an unknown functionality of the file /OutsideCmd. The manipulation results i... https://www.thehackerwire.com/vulnerability/CVE-2026-2564/ https://t.co/BUDlm9jNKk

    Post summary

    A new vulnerability (CVE‑2026‑2564) in Intelbras VIP 3260 has been disclosed with minimal detail, and no PoC, exploit, patch, or active exploitation information is provided.

    0000044
    112 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-2564 - High A security flaw has been discovered in Intelbras VIP 3260 Z IA 2.840.00IB005.0.T. Affected by this vulnerability is an unknown functionality of the file /OutsideCmd. The manipulation results i... https://www.thehackerwire.com/vulnerability/CVE-2026-2564/ https://t.co/GZqmW14t5l

    Post summary

    A high‑severity vulnerability (CVE‑2026‑2564) affecting Intelbras VIP 3260 Z has been disclosed, but the post provides no details on exploitation, PoC, or mitigation.

    0000045
    112 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    There is a new vulnerability with elevated criticality in Intelbras VIP 3260 Z IA (CVE-2026-2564) https://vuldb.com/?id.346171

    Post summary

    A new CVE-2026-2564 vulnerability with elevated criticality has been reported for the Intelbras VIP 3260 Z IA, but no further exploitation or patch details are provided.

    0000084
    2.1K followersView on X

Explore more