Critical severity9.8NVD Advisory· Published Sep 5, 2025· Updated Jun 17, 2026
CVE-2025-35451
CVE-2025-35451
Description
PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The passwords can readily be cracked. Many cameras have SSH or telnet listening on all interfaces. The passwords cannot be changed by the user, nor can the SSH or telnet service be disabled by the user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
54- cpe:2.3:o:multicam-systems:mcamii_ptz_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:ndi_fixed_camera_firmware:*:*:*:*:*:*:*:*Range: <=7.2.94
- cpe:2.3:o:ptzoptics:pt12x-ndi-xx_firmware:*:*:*:*:*:*:*:*Range: <=6.3.34
- cpe:2.3:o:ptzoptics:pt12x-sdi-xx-g2_firmware:*:*:*:*:*:*:*:*Range: <=6.3.34
- cpe:2.3:o:ptzoptics:pt12x-usb-xx-g2_firmware:*:*:*:*:*:*:*:*Range: <=6.2.81
- cpe:2.3:o:ptzoptics:pt20x-ndi-xx_firmware:*:*:*:*:*:*:*:*Range: <=6.3.20
- cpe:2.3:o:ptzoptics:pt20x-sdi-xx-g2_firmware:*:*:*:*:*:*:*:*Range: <=6.3.20
- cpe:2.3:o:ptzoptics:pt20x-usb-xx-g2_firmware:*:*:*:*:*:*:*:*Range: <=6.2.73
- cpe:2.3:o:ptzoptics:pt30x-ndi-xx_firmware:*:*:*:*:*:*:*:*Range: <=6.3.30
- cpe:2.3:o:ptzoptics:pt30x-sdi-xx-g2_firmware:*:*:*:*:*:*:*:*Range: <=6.3.30
- cpe:2.3:o:ptzoptics:pteptz-ndi-zcam-g2_firmware:*:*:*:*:*:*:*:*Range: <=8.1.81
- cpe:2.3:o:ptzoptics:pteptz-zcam-g2_firmware:*:*:*:*:*:*:*:*Range: <=8.1.81
- cpe:2.3:o:ptzoptics:vl_fixed_camera_firmware:*:*:*:*:*:*:*:*Range: <=7.2.94
- cpe:2.3:o:smtav:ba12-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba12s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba20-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba20s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba30-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bv20s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bv30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20s-sh_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20uhd-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20uhd_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:hd17h-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:hd17h_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v60xl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v61w_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v63xl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v71uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx60al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx60asl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61asl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61basl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx630al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx701ra_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx701ta_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx70uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx71uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx720l_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx751ba_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx752a_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx752ag_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx800i2_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx90_firmware:*:*:*:*:*:*:*:*
- Range: 0
- Range: 0
Patches
Vulnerability mechanics
References
5- www.labs.greynoise.io/grimoire/2024-10-31-sift-0-day-rce/nvdExploitThird Party Advisory
- github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-162-10.jsonnvdThird Party Advisory
- www.cisa.gov/news-events/ics-advisories/icsa-25-162-10nvdThird Party AdvisoryUS Government Resource
- www.cve.org/CVERecordnvdThird Party Advisory
- www.greynoise.io/blog/greynoise-intelligence-discovers-zero-day-vulnerabilities-in-live-streaming-cameras-with-the-help-of-ainvdThird Party Advisory
News mentions
0No linked articles in our index yet.