CVE-2026-35718 PUBLISHED

Assigner: mitre
Reserved: 06.04.2026 Published: 02.06.2026 Updated: 02.06.2026

A path traversal vulnerability in the /admin/downloadMedias.cgi endpoint of VIVOTEK INC FD8136-VVTK firmware 0300a allows authenticated attackers to read any file on the device via sending a crafted request.

Product Status

Vendor n/a
Product n/a
Versions
  • Version n/a is affected

References

Problem Types

  • n/a text