Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersDisclosure
The tweet announces CVE-2026-55975, a command injection vulnerability in H.View IP cameras that requires authentication and carries a CVSS score of 7.2. No patch is available; users are advised to isolate affected devices.
DFIR Lab[verified]@DFIR_LabPatch
The tweet warns of CVE‑2026‑55975 in H[.]View IP cameras, detailing a command injection flaw that allows authenticated attackers to run commands, and urges immediate patching.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The analysis confirms CVE-2026-55975 was actively exploited in H.VIEW HV-500S6 IP cameras, enabling privilege escalation and lateral movement, with no patch or PoC disclosed.
ちゃちゃ@doudemo_nandemoDisclosure
Two CVEs (CVE-2026-55975 and CVE-2026-56414) have been reported to CISA as OS command injection and arbitrary file upload vulnerabilities in the H.VIEW HV-500S6 IP camera; the report is an official advisory with no PoC, exploit code, or patch information provided.