
AJCloud AJY IPC Firmware Path Traversal via jdbhttpd
Unauthenticated path traversal in jdbhttpd/0.1.0 (AJCloud AJY IPC firmware) allowing remote reading of arbitrary files as root, including cleartext RTSP credentials.
jdbhttpd resolves files from the request URI without preventing ../ traversal outside the web root. An unauthenticated attacker on the network can read arbitrary files as root, recover the stored RTSP credentials, and use them to access the video stream.
Full analysis: CVE-2026-56718