Longwatch RCE Vulnerability Let Attackers Execute Remote Code With Elevated Privileges
ID: 423133a1-8a33-5c03-b47e-92e2ef9c2550
STIX ID: report--423133a1-8a33-5c03-b47e-92e2ef9c2550
Feed Name: cybersecurityNews.com
Threat Score
A critical remote code execution (RCE) vulnerability, CVE-2025-13658, was disclosed in Industrial Video & Control's Longwatch (versions 6.309–6.334) that permits unauthenticated attackers to execute arbitrary code as SYSTEM via simple HTTP GET requests; CISA issued an advisory and the vendor released patched version 6.335, and organizations are advised to apply the update and implement network segmentation and access controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
