A vulnerability categorized as critical has been discovered in 648540858 wvp-GB28181-pro 2.7.4-20260107. This vulnerability affects unknown code of the file LogController.java of the component Log File Download Endpoint. The manipulation of the argument fileName results in path traversal.
This vulnerability is cataloged as CVE-2026-19829. The attack may be launched remotely. Furthermore, there is an exploit available.