🛡️ CVE-2025-35452
🔴 CVSS 9.8 — Critical ⚠️ Exploit Public CWE-798 NVD
9.8
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use default, shared credentials for the administrative web interface.

Details

Severity CRITICAL
CVSS Score 9.8
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE CWE-798
Public Exploit ⚠️ Yes
Source NVD
Published 2025-09-05
Updated 2026-06-02
Modified 2025-12-23

Affected Packages

Software From version Fixed in
ba12-n-firmware
ba12s-firmware
ba20-n-firmware
ba20s-firmware
ba30-n-firmware
ba30s-firmware
bv20s-firmware
bv30s-firmware
bx20n-firmware
bx20s-sh-firmware
bx20uhd-firmware
bx20uhd-n-firmware
bx30s-firmware
hd17h-firmware
hd17h-n-firmware
mcamii-ptz-firmware
ndi-fixed-camera-firmware 7.2.94
pt-studiopro-firmware 9.0.41
pt12x-4k-xx-g3-firmware 0.0.58
pt12x-link-4k-xx-firmware 0.0.63
pt12x-ndi-xx-firmware
pt12x-sdi-xx-g2-firmware
pt12x-se-xx-g3-firmware 9.1.43
pt12x-usb-xx-g2-firmware
pt12x-zcam-firmware
pt20x-4k-xx-g3-firmware 0.0.85
pt20x-link-4k-xx-firmware 0.0.89
pt20x-sdi-xx-g2-firmware
pt20x-se-xx-g3-firmware 9.1.32
pt20x-usb-xx-g2-firmware
pt20x-zcam-firmware
pt30x-4k-xx-g3-firmware 2.0.64
pt30x-link-4k-xx-firmware 2.0.71
pt30x-ndi-xx-firmware
pt30x-sdi-xx-g2-firmware
pt30x-se-xx-g3-firmware 9.1.33
pteptz-ndi-zcam-g2
pteptz-zcam-g2-firmware
ptvl-zcam-firmware
t20x-ndi-xx-firmware
v60xl-firmware
v61w-firmware
v63xl-firmware
v71uvs-firmware
vl-fixed-camera-firmware 7.2.94
vx60al-firmware
vx60asl-firmware
vx61al-firmware
vx61asl-firmware
vx61basl-firmware
vx630al-firmware
vx701ra-firmware
vx701ta-firmware
vx70uvs-firmware
vx71uvs-firmware
vx720l-firmware
vx751ba-firmware
vx752a-firmware
vx752ag-firmware
vx800i2-firmware
vx90-firmware

Similar Threats

Exploit Protection

Help block exploit attempts

BotEraser is designed to detect and help reduce malicious bot traffic that may target known vulnerabilities on your site.

Try BotEraser Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.