Machine-generated analysis · WAYSCloud LLM
Remote command execution with root privileges is possible on the listed VIVOTEK camera firmware versions.
Context
The advisory concerns firmware for VIVOTEK security cameras, covering many V, C, S, Dome, Panoramic, Bullet, and other model series. It states that a command-injection flaw (CVE-2026-22755) can allow an attacker to execute commands remotely with root privileges, potentially compromising the camera system. The vulnerability is rated CVSS v3 base score 10.
Operator considerations
Check: Identify any deployed VIVOTEK cameras matching the listed model numbers and firmware versions.
Isolate: Segment camera networks from critical systems and limit external access.
Log: Monitor device logs for unexpected command execution or anomalous network traffic to the cameras.
Successful exploitation of this vulnerability may allow attackers to achieve remote command execution on affected devices, potentially with root privileges, leading to full compromise of the camera system.
The following versions of VIVOTEK Camera Firmware are affected:
V Series model_FD9187 (CVE-2026-22755)
V Series model_FD9189 (CVE-2026-22755)
V Series model_FD9365 (CVE-2026-22755)
V Series model_FD9387 (CVE-2026-22755)
V Series model_FD9389 (CVE-2026-22755)
V Series model_FD9391 (CVE-2026-22755)
C Series model_FE9180 (CVE-2026-22755)
V Series model_FE9191 (CVE-2026-22755)
V Series model_FE9382 (CVE-2026-22755)
V Series model_FE9391 (CVE-2026-22755)
V Series model_IB9365 (CVE-2026-22755)
V Series model_IB9387 (CVE-2026-22755)
V Series model_IB9389 (CVE-2026-22755)
V Series model_IB939 (CVE-2026-22755)
V Series model_IP9165 (CVE-2026-22755)
V Series model_IP9171 (CVE...
Read the full advisory on CISA →