{"id":"CVE-2026-86474","published":"2026-09-16T10:16:54.947","lastModified":"2026-09-18T19:44:10.957","description":"The lack of TLS certificate validation when downloading firmware updates in VEO and VEO-XS Wi-Fi monitors, in versions prior to 01.48.001, allows an attacker to perform man-in-the-middle attacks on the update channel.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-295"],"vendors":[],"products":[],"references":[{"url":"https://fermax.com/security-advisories","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}