CVE-2026-20766
8.8Milesight · AIOT cameras
An out-of-bounds memory access vulnerability in Milesight AIOT camera firmware allows for potential system compromise.
Executive summary
A critical out-of-bounds memory access vulnerability in Milesight AIOT camera firmware poses a significant risk of remote code execution or system instability.
Vulnerability
The vulnerability is an out-of-bounds memory access flaw (CWE-122). It can be triggered by an unauthenticated attacker via a network-based vector, although it requires user interaction to facilitate the exploit.
Business impact
The exploitation of this memory access vulnerability could lead to total system compromise, resulting in unauthorized access to sensitive video feeds or full device takeover. Given the CVSS score of 8.8, this represents a high-severity risk that could lead to significant operational disruption and a breach of physical security infrastructure.
Remediation
Immediate Action: Update all affected Milesight AIOT camera firmware to the versions specified in the vendor advisory (e.g., 51.7.0.77-r13 or 3x.8.0.3-r13 depending on the model).
Proactive Monitoring: Monitor network traffic for unusual patterns directed at camera management interfaces and review system logs for signs of unexpected reboots or crashes.
Compensating Controls: Restrict access to camera management interfaces by isolating them on a segmented management VLAN and employing a Web Application Firewall or proxy to filter malicious traffic.
Exploitation status
Public Exploit Available: No (exploit_available: false).
Analyst recommendation
This vulnerability presents a substantial risk to the integrity and confidentiality of your video surveillance infrastructure. Security teams should prioritize the deployment of the provided firmware updates across all affected camera models immediately to prevent potential remote exploitation.
Sources
Originally found and disclosed by Souvik Kandar reported these vulnerabilities to CISA, per the CVE Program record.