VYPR

XProtect Device Pack

by Milestone Systems

CVEs (2)

  • CVE-2024-12569HigDec 19, 2024
    risk 0.51cvss 7.8epss 0.00

    Disclosure of sensitive information in a Milestone XProtect Device Pack driver’s log file for third-party cameras, allows an attacker to read camera credentials stored in the Recording Server under specific conditions.

  • CVE-2024-3506MedOct 8, 2024
    risk 0.44cvss 6.7epss 0.00

    A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server under strict conditions.