Executive brief
Surveillance and monitoring products contain hard-coded credentials that could allow an attacker with network access to FTP services to gain remote file access with administrative (root) privileges. An exploit would enable an attacker to read, modify, or delete critical system files and recordings, potentially compromising video surveillance infrastructure and enabling cover-up of security incidents.
Technical details
The vulnerability is a hard-coded credential weakness in FTP services exposed by the affected products. The root cause is the inclusion of static, unchangeable administrator credentials in the product firmware or software. Attack vector is network-based: if FTP is accessible over the network (internal or external), an unauthenticated attacker can connect using the hard-coded credentials without any user interaction. The attacker gains immediate root-level file system access, allowing reading, modification, or deletion of files. No preconditions beyond network reachability to the FTP port are required. Patches are likely available from Digital Watchdog or the product vendor.
Affected products
- Digital Watchdog <UNKNOWN> <UNKNOWN>
Timeline
- 2026-09-15: disclosed
- other: CISA advisory reference: icsa-26-258-01