CVE-2026-94204
7.5 HIGHpublic exploit availablePublished 2026-09-29 · Updated 2026-09-29
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
The central cloud storage backend for the entire dashcam platform is misconfigured with public-read permissions, allowing unrestricted access to all stored objects. Because this bucket serves as shared storage for the platform, sensitive user records, live dashcam footage, application packages, and firmware files are exposed to anyone on the internet.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses
CWE-732
Public exploit & PoC references
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-13673
- MEDIUMCVE-2026-15952
- CRITICALCVE-2026-39353PoC
- HIGHCVE-2026-49811
- UNSCOREDCVE-2026-68490
- HIGHCVE-2026-73598
- MEDIUMCVE-2026-76104
- MEDIUMCVE-2026-77256PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.