Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Digital Watchdog has released updated firmware for the affected products. Users should download and install the updated firmware for their model at: https://digital-watchdog.com/downloads/
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 15 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The affected products are vulnerable to an authentication bypass that allows unauthenticated remote attackers to disclose sensitive device information, including administrator credentials in plaintext, by sending crafted HTTP(S) requests. | |
| Title | Missing Authentication for Critical Function in Digital Watchdog VMAX DVR and NVR Product Lineups | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-09-15T20:20:57.887Z
Reserved: 2026-08-03T21:27:04.638Z
Link: CVE-2026-68953
No data.
Status : Received
Published: 2026-09-15T21:16:42.743
Modified: 2026-09-15T21:16:42.743
Link: CVE-2026-68953
No data.
OpenCVE Enrichment
No data.
-
CWE-306
Missing Authentication for Critical Function