
🚨 HIGH SEVERITY: CVE-2026-40066 (CVSS 8.8) Anviz CX2 Lite & CX7 access control devices vulnerable to unauthenticated RCE via unverified update packages. Attackers can upload malicious firmware to execute arbitrary code. Patch immediately. #CVE #Vulnerability #PatchNow https://t.co/MxGU1kmsEs
Post summary
Anviz access control devices are vulnerable to unauthenticated remote code execution via malicious firmware uploads, and users are urged to apply patches immediately.


