CVE-2026-50245 is a HIGH severity vulnerability with a CVSS score of 8.3. Brickcom cameras allow unauthenticated access to live snapshot images via the /ONVIF endpoint and no authentication is required to retrieve still images from the camera feed.
A vulnerability was discovered in Brickcom cameras, which are shipped with default credentials. This allows any unauthenticated remote attacker to silently access camera feeds. The vulnerability has a CVSS v4 score of 8.3, indicating a high severity.