logo

Longwatch RCE Vulnerability Let Attackers Execute Remote Code With Elevated Privileges

ID: 423133a1-8a33-5c03-b47e-92e2ef9c2550

STIX ID: report--423133a1-8a33-5c03-b47e-92e2ef9c2550

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-12-03

Date Updated: 2026-04-21

Author: Abinaya

...
...

A critical remote code execution (RCE) vulnerability, CVE-2025-13658, was disclosed in Industrial Video & Control's Longwatch (versions 6.309–6.334) that permits unauthenticated attackers to execute arbitrary code as SYSTEM via simple HTTP GET requests; CISA issued an advisory and the vendor released patched version 6.335, and organizations are advised to apply the update and implement network segmentation and access controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.