
CVE-2026-31927 Anviz CX7 Firmware is vulnerable to an authenticated CSV upload which allows path traversal to overwrite arbitrary files (e.g., /etc/shadow), enabling unauthorized … https://www.cve.org/CVERecord?id=CVE-2026-31927
Post summary
The CVE‑record explains that Anviz CX7 firmware is vulnerable to an authenticated CSV upload that permits path traversal and arbitrary file overwrite. No evidence of exploitation, patches, or PoC code is given.
