CVE-2026-82989
Description
AI Translation Available
There is an input injection in vCast exposed network services in ViewSonic ViewBoard that allows a remote, unauthenticated attacker to inject arbitrary input into service endpoints via network-based HTTP requests to unauthenticated endpoints
https://blog.l3afs.space/posts/Vcast-Viewsonic-RCE-chain/
https://kb.cert.org/vuls/id/234131