CVE-2016-15055 - CVE House
Back to Database
Status published High CVE-2016-15055

JVC VN-T IP-Camera Directory Traversal via check.cgi

Vulnerability Description

JVC VN-T IP-camera models firmware versions up to 2016-08-22 (confirmed on the VN-T216VPRU model) contain a directory traversal vulnerability in the checkcgi endpoint that accepts a user-controlled file parameter. An unauthenticated remote attacker can leverage this vulnerability to read arbitrary files on the device.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-15055

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Yakir Wizman

Affected Vendor

JVC (JVCKENWOOD)

View all reports →

Affected Software

IP-Camera (VN-T216VPRU)
Vulnerable Versions:
0

Timeline

Official Publish: November 12th, 2025
Last Modified: April 7th, 2026
Added to House: July 20th, 2026

CVSS Vectors

Weaknesses (CWE)