# CVE-2026-2564

## Summary

- **CVE ID:** CVE-2026-2564
- **Severity:** CRITICAL
- **CVSS Score:** 9.2 (CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X)
- **CWE:** CWE-640
- **Published:** Feb 16, 2026
- **Last Modified:** Mar 12, 2026

## Description

A security flaw has been discovered in Intelbras VIP 3260 Z IA 2.840.00IB005.0.T. Affected by this vulnerability is an unknown functionality of the file /OutsideCmd. The manipulation results in weak password recovery. It is possible to launch the attack remotely. Attacks of this nature are highly complex. The exploitation appears to be difficult. It is recommended to upgrade the affected component.

## Affected Products

- Intelbras — VIP 3260 Z IA (2.840.00IB005.0.T)

## References

- [CNA](https://vuldb.com/?id.346171)
- [CNA](https://vuldb.com/?ctiid.346171)
- [CNA](https://vuldb.com/?submit.741776)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.47%
- **EPSS Percentile:** 39.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._