Remote Access Vulnerability in Innomic Devices
CVE-2022-50981
9.8CRITICAL
Key Information:
- Vendor
Innomic
- Vendor
- CVE Published:
- 2 February 2026
What is CVE-2022-50981?
An unauthenticated remote attacker can exploit this vulnerability to gain full administrative access to Innomic devices. The devices come with default settings that do not enforce password creation, leaving them susceptible to unauthorized access. This misconfiguration allows attackers to take control without any initial authentication, posing significant risks to network security.
Affected Version(s)
AvibiaLine AVLX1 HD 5.0 2.1.1340 <= 2.1.1387
AvibiaLine AVLX1 HD 5.0 2.1.1866
AvibiaLine AVLX2 HD 5.0 2.1.1340 <= 2.1.1387
