{"id":"CVE-2026-82563","title":"An attacker could impersonate the camera and place themselves in a man-in-the-middle or device-emulation position","summary":"An attacker could impersonate the camera and place themselves in a man-in-the-middle or device-emulation position. This permits manipulation of device status responses, observation of application requests, and potential triggering of fir…","severity":"high","cvss":7.6,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L","cwe":["CWE-290"],"vendor":"Softish","product":"EarVision Android application","affected":["earvision_android_application 1.3.1","c6_ear_camera 1.3.1_Code 132"],"published":"2026-09-09","updated":"2026-09-10","sourceUpdated":"2026-09-10T15:53:23.707","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-82563","references":[{"url":"https://raw.githubusercontent.com/cisagov/CSAF/refs/heads/develop/csaf_files/VA/white/2026/va-26-251-01.json","label":"ics-cert@hq.dhs.gov"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-09T19:13:22.621293Z"},"ingestedAt":"2026-09-14T05:49:54.899Z","epss":0.00146,"epssPercentile":0.04201,"slug":"CVE-2026-82563","body":"## Overview\n\nAn attacker could impersonate the camera and place themselves in a man-in-the-middle or device-emulation position. This permits manipulation of device status responses, observation of application requests, and potential triggering of firmware-update behavior.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":42,"depthScoreParts":{"impact":41.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}