Skip to main content
Mallory
Back to intelligence
embedded-device-vulnerabilityindustrial-control-system-vulnerabilityinternet-facing-service-vulnerabilityperimeter-device-exposure

Critical Unauthenticated RCE Disclosed in AVer PTC Camera Models

Updated 1d agoFirst seen Jun 18, 20262 sources

CISA published an ICS advisory for CVE-2026-40624, a critical flaw affecting multiple AVer PTC camera models, including the PTC500S, PTC115, PTC500+, and PTC115+. The vulnerability stems from improper input validation and can allow a remote, unauthenticated attacker to achieve arbitrary code execution via a specially crafted web request. The issue is rated Critical, with a CVSS v3.1 score of 9.8 and a CVSS v4.0 score of 9.3, and all listed versions of the affected products were reported as vulnerable.

CISA said it had no reports of public exploitation targeting the flaw at the time of publication, but urged organizations to reduce internet exposure of control system devices, isolate affected networks, and use secure remote access methods such as fully updated VPNs. Additional mitigation guidance calls for updating camera firmware to the latest available version and applying vendor-provided security patches as they become available.

Share:
Critical Unauthenticated RCE Disclosed in AVer PTC Camera Models
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

1 event from the most recent confirmed update back to the earliest known activity.

1 EVENTS
Jun 18, 20262d ago

CISA publishes advisory for critical AVer PTC camera vulnerability

CISA published advisory ICSA-26-169-01 for CVE-2026-40624, a critical improper input validation flaw affecting AVer PTC500S, PTC115, PTC500+, and PTC115+ cameras. The advisory said a remote, unauthenticated attacker could achieve arbitrary code execution via a specially crafted web request and noted no known public exploitation at the time of publication.

AVer PTC cameras | CISA
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

4 LINKEDOpen in app
Organizations
3 linked
Avercvefeed.ioGitHub
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.