I just watched the Benn Jordan's video on this. Even if this is just configuration error on some of their cameras this is terrifying and I think they should be held accountable for this and their previous myriad of CVEs.
It's amazing that any vendor, let alone a CJIS vendor even allows unsecured deployments of their software in 2025.
Here's the video for interested folk:
https://www.youtube.com/watch?v=vU1-uiUlHTo