Kenik Camera management Panel is vulnerable to Path Traversal vulnerability. An unauthenticated attacker can send GET request with arbitrary file path and read corresponding files located on the server.
The issue was fixed in version 2026-04-23 of the KG-5260xxxx-IL-(G)2 cameras.
Rest of the products were fixed in version 2025-04-21.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://cert.pl/posts/2026/05/CVE-2026-7766 |
|
History
Tue, 26 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kenik
Kenik kg-5230das-il-g3 Kenik kg-5230tas-il-3 Kenik kg-5230tas-il-g3 Kenik kg-5260dzas-il-3 Kenik kg-5260dzas-il-g3 Kenik kg-5260tzas-il-3 Kenik kg-5260tzas-il-g3 Kenik kg-5260xxxx-il-(g)2 |
|
| Vendors & Products |
Kenik
Kenik kg-5230das-il-g3 Kenik kg-5230tas-il-3 Kenik kg-5230tas-il-g3 Kenik kg-5260dzas-il-3 Kenik kg-5260dzas-il-g3 Kenik kg-5260tzas-il-3 Kenik kg-5260tzas-il-g3 Kenik kg-5260xxxx-il-(g)2 |
Mon, 25 May 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Kenik Camera management Panel is vulnerable to Path Traversal vulnerability. An unauthenticated attacker can send GET request with arbitrary file path and read corresponding files located on the server. The issue was fixed in version 2026-04-23 of the KG-5260xxxx-IL-(G)2 cameras. Rest of the products were fixed in version 2025-04-21. | |
| Title | Path Traversal in Kenik cameras | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-PL
Published: 2026-05-25T11:16:22.837Z
Updated: 2026-05-26T15:58:54.905Z
Reserved: 2026-05-04T10:01:33.811Z
Link: CVE-2026-7766
Updated: 2026-05-26T15:58:52.029Z
Status : Deferred
Published: 2026-05-25T13:16:26.193
Modified: 2026-05-26T19:59:22.323
Link: CVE-2026-7766
No data.
ReportizFlow