Critical severity9.8NVD Advisory· Published Sep 5, 2025· Updated Jun 17, 2026
CVE-2025-35452
CVE-2025-35452
Description
PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use default, shared credentials for the administrative web interface.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
64- cpe:2.3:o:multicam-systems:mcamii_ptz_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:ndi_fixed_camera_firmware:*:*:*:*:*:*:*:*Range: <=7.2.94
- cpe:2.3:o:ptzoptics:pt-studiopro_firmware:*:*:*:*:*:*:*:*Range: <=9.0.41
- cpe:2.3:o:ptzoptics:pt12x-4k-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=0.0.58
- cpe:2.3:o:ptzoptics:pt12x-link-4k-xx_firmware:*:*:*:*:*:*:*:*Range: <=0.0.63
- cpe:2.3:o:ptzoptics:pt12x-ndi-xx_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt12x-sdi-xx-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt12x-se-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=9.1.43
- cpe:2.3:o:ptzoptics:pt12x-usb-xx-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt12x-zcam_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt20x-4k-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=0.0.85
- cpe:2.3:o:ptzoptics:pt20x-link-4k-xx_firmware:*:*:*:*:*:*:*:*Range: <=0.0.89
- cpe:2.3:o:ptzoptics:pt20x-sdi-xx-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt20x-se-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=9.1.32
- cpe:2.3:o:ptzoptics:pt20x-usb-xx-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt20x-zcam_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt30x-4k-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=2.0.64
- cpe:2.3:o:ptzoptics:pt30x-link-4k-xx_firmware:*:*:*:*:*:*:*:*Range: <=2.0.71
- cpe:2.3:o:ptzoptics:pt30x-ndi-xx_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt30x-sdi-xx-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pt30x-se-xx-g3_firmware:*:*:*:*:*:*:*:*Range: <=9.1.33
- cpe:2.3:o:ptzoptics:pteptz-ndi-zcam-g2:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:pteptz-zcam-g2_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:ptvl-zcam_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:t20x-ndi-xx_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:ptzoptics:vl_fixed_camera_firmware:*:*:*:*:*:*:*:*Range: <=7.2.94
- cpe:2.3:o:smtav:ba12-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba12s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba20-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba20s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba30-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:ba30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bv20s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bv30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20s-sh_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20uhd-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx20uhd_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:bx30s_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:hd17h-n_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:smtav:hd17h_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v60xl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v61w_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v63xl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:v71uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx60al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx60asl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61asl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx61basl_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx630al_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx701ra_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx701ta_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx70uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx71uvs_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx720l_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx751ba_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx752a_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx752ag_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx800i2_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:valuehd:vx90_firmware:*:*:*:*:*:*:*:*
- Range: 0
- Range: 0
Patches
Vulnerability mechanics
References
5- github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-162-10.jsonnvdPatch
- www.labs.greynoise.io/grimoire/2024-10-31-sift-0-day-rce/nvdExploitThird Party Advisory
- www.cisa.gov/news-events/ics-advisories/icsa-25-162-10nvdThird Party AdvisoryUS Government Resource
- www.cve.org/CVERecordnvdThird Party Advisory
- www.greynoise.io/blog/greynoise-intelligence-discovers-zero-day-vulnerabilities-in-live-streaming-cameras-with-the-help-of-ainvdThird Party Advisory
News mentions
0No linked articles in our index yet.