# CVE-2026-81330

## Summary

- **CVE ID:** CVE-2026-81330
- **Severity:** HIGH
- **CVSS Score:** 7.1 (CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N)
- **CWE:** CWE-319
- **Published:** Sep 9, 2026
- **Last Modified:** Sep 9, 2026

## Description

The C6 ear camera transmits live video to the EarVision Android application over unencrypted UDP streams. The application manifest permits cleartext traffic, and captured network traffic contains reconstructable JPEG or WEBP video frames transmitted over UDP. An attacker within local wireless range may capture and reconstruct the live video stream without transport encryption.

## Affected Products

- Softish — EarVision Android application (1.3.1)
- Softish — C6 Ear Camera (1.3.1_Code 132)

## References

- [CNA](https://raw.githubusercontent.com/cisagov/CSAF/refs/heads/develop/csaf_files/VA/white/2026/va-26-251-01.json)

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._