CVE-2026-82989

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

There is an input injection in vCast exposed network services in ViewSonic ViewBoard that allows a remote, unauthenticated attacker to inject arbitrary input into service endpoints via network-based HTTP requests to unauthenticated endpoints

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-147

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-10-06: 110-06
Referenced assets1 URL
Full discourse1 post
  • iototsecnews@iototsecnews

    ViewSonic vCast の脆弱性 CVE-2026-82987/82988/82989:連鎖によるリスクとパッチ提供までの対処 https://iototsecnews.jp/2026/09/28/critical-viewsonic-vcast-vulnerabilities-allow-attackers-to-gain-full-control-over-the-device/ ViewSonic vCast に関する、重大なセキュリティ上の脆弱性を解説する記事です。問題の背景として、画面共有機能などを提供する未認証ネットワークエンドポイントに複数の問題が存在することが挙げられます。これらの脆弱性 CVE-2026-82987/CVE-2026-82989/CVE-2026-82988 が悪用された場合、画面内容の漏えい/不正アプリの導入/端末の制御権限奪取などの重大な問題が発生します。現在は公式修正版の公開待ちであるため、修正プログラム適用までの過渡的な措置として、専用ネットワークセグメントへの隔離/アクセス制限の徹底/通信ログの監視などの安全対策が求められます。 #CVE202682987 #CVE202682988 #CVE202682989 #vCast #ViewSonic #Vulnerability

    0000066
    518 followersView on X

Explore more