Junglewise Threat Intelligence

CVE-2026-27785: Milesight AIOT Cameras authorization bypass via weak key generation

CVE-2026-27785 · Severity: high · CVSS 7.1 · Published 2026-04-27

Executive brief

A security vulnerability has been identified in several Milesight AIOT camera models, which are used for professional video surveillance and monitoring. Due to a flaw in how the cameras generate security keys, an attacker could bypass the login process to gain unauthorized access to the device. This could allow an intruder to view private video feeds, change camera settings, or disrupt security operations.

Technical details

A weak key generation vulnerability (CWE-639) exists in the firmware of various Milesight AIOT camera models. The flaw stems from an insecure implementation of key generation logic, which allows for authorization bypass through user-controlled keys. An attacker on the adjacent network could exploit this vulnerability to bypass authentication mechanisms. Successful exploitation could lead to unauthorized access to the camera's management interface, potentially resulting in data exfiltration or device takeover. Users are advised to update to the latest firmware versions provided by the vendor.

Affected products

  • Milesight MS-Cxx63-PD <=51.7.0.77-r12
  • Milesight MS-Cxx64-xPD <=51.7.0.77-r12
  • Milesight MS-Cxx73-xPD <=51.7.0.77-r12
  • Milesight MS-Cxx75-xxPD <=51.7.0.77-r12
  • Milesight MS-Cxx83-xPD <=51.7.0.77-r12
  • Milesight MS-Cxx74-PA <=3x.8.0.3-r11
  • Milesight MS-C8477-HPG1 <=63.8.0.4-r3
  • Milesight MS-C8477-PC <=48.8.0.4-r3
  • Milesight MS-C5321-FPE <=62.8.0.4-r5
  • Milesight MS-Cxx72-xxxPE <=61.8.0.5-r2
  • Milesight MS-Cxx62-xxxPE <=61.8.0.5-r2
  • Milesight MS-Cxx52-xxxPE <=61.8.0.5-r2
  • Milesight MS-Nxxxx-NxE <=7x.9.0.19-r5

CVE identifiers

  • CVE-2026-27785
  • CVE-2026-20766
  • CVE-2026-32644
  • CVE-2026-28747
  • CVE-2026-32649

Timeline

  • 2026-04-23: advisory: CISA ICS Advisory ICSA-26-113-03 published
  • 2026-04-27: disclosed: CVE published to NVD

References