CVE-2026-35546Disclosure(anviz / cx2_lite)

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (5 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Anviz CX2 Lite and CX7 are vulnerable to unauthenticated firmware uploads. This causes crafted archives to be accepted, enabling attackers to plant and execute code and obtain a reverse shell.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cx2_lite
  • cx2_lite_firmware
  • cx7
  • cx7_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 8 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 7 signals
  • Disclosure: 4 classified signals
  • General: 3 classified signals
  • Peaked at 5 mentions on most recent observed day (2026-05-12)
  • 8 total mentions across 3 days

Affected systems

Vendors
Products
cx2_litecx2_lite_firmwarecx7cx7_firmware

1 version affected across 4 products

Deep dive

Activity timeline8 mentions / 3d
01345Mentions · 2026-04-17: 1Mentions · 2026-04-18: 2Mentions · 2026-05-12: 5PoC Mentioned / Linked · 2026-04-17: 1Technical Details · 2026-04-17: 1Technical Details · 2026-04-18: 2Technical Details · 2026-05-12: 404-1704-1805-12
Signal classification3 categories
Disclosure
450.0%
General
337.5%
PoC
112.5%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-171
PoC1
2026-04-182
Disclosure1General1
2026-05-125
Disclosure3General2
Full discourse8 posts
  • Lyrie.ai@lyrie_ai
    Disclosure

    --- Validated by the Lyrie Threat Intelligence Pipeline — 3 independent sources confirmed before publication. No speculation. CVE: CVE-2026-35546 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    An advisory confirms a new CVE (CVE-2026-35546) with a critical severity, CVSS 9.8, but provides no PoC, exploit code, or patch details.

    1000040
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    CVE: CVE-2026-35546 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory Anviz CX2 Lite and CX7 are vulnerable to unauthenticated firmware uploads.

    Post summary

    Anviz CX2 Lite and CX7 devices are critically vulnerable to unauthenticated firmware uploads, but no PoC, exploit, or active exploitation details are provided.

    1000035
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    General

    References CVE: CVE-2026-35546 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    The statement lists CVE-2026-35546’s critical severity but provides only basic CVSS information without details on exploitation, patching, or PoC.

    1000033
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    CRITICAL: CVE-2026-35546 (CVSS 9.8) — anviz cx7 firmware. CVE: CVE-2026-35546 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    The text announces CVE‑2026‑35546 as a critical vulnerability in Anviz CX7 firmware, with full CVSS details but no indication of PoC, active exploitation or mitigation.

    1000042
    210 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-35546 Anviz CX2 Lite and CX7 are vulnerable to unauthenticated firmware uploads. This causes crafted archives to be accepted, enabling attackers to plant and execute code … https://www.cve.org/CVERecord?id=CVE-2026-35546

    Post summary

    Anviz CX2 Lite and CX7 devices are vulnerable to unauthenticated firmware uploads via crafted archives, potentially enabling code execution.

    00010365
    57.2K followersView on X
  • 0day Signal@0dayPublishing
    PoC

    🚨 CVE-2026-35546: Anviz Products Missing Authentic... Anviz access control devices accept any firmware blob without auth checks - instant RCE with a zip file and zero effort... https://zerodaysignal.com/vulnerability/CVE-2026-35546 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    Anviz access control devices allow unauthenticated RCE via a crafted firmware zip file; a proof‑of‑concept is referenced by a URL.

    0001078
    218 followersView on X
  • Lyrie.ai@lyrie_ai
    General

    https://lyrie.ai/research/research/cve-2026-35546-anviz-cx7-firmware #lyrie #cybersecurity #CVE #threatintel #zerodayattack

    Post summary

    The input references a CVE via a URL and hashtags but provides no substantive information on exploitation, patching, technical details, or debunking.

    0000026
    210 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-35546 Anviz CX2 Lite and CX7 are vulnerable to unauthenticated firmware uploads. This causes crafted archives to be accepted, enabling attackers to plant and execute code … https://www.cve.org/CVERecord?id=CVE-2026-35546 ----- Traducción: CVE-2026-35546 Anv… http://infoflow.cloud`

    Post summary

    The post discloses CVE‑2026‑35546 as an unauthenticated firmware upload flaw enabling remote code execution, but it offers no PoC, exploit code, or patch details.

    0000042
    72 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
HWanvizcx2_lite---
OSanvizcx2_lite_firmware---
HWanvizcx7---
OSanvizcx7_firmware---

Explore more