PTZ Camera Vulnerabilities: CISA Adds New Exploits
ID: b4147eba-1186-594d-81b0-5973d92b5b30
STIX ID: report--b4147eba-1186-594d-81b0-5973d92b5b30
Feed Name: Cyble Blog
**CISA added two critical vulnerabilities (CVE-2024-8956 and CVE-2024-8957) affecting PTZOptics PT30X-SDI/PT30X-NDI-xx-G2 cameras; CVE-2024-8956 enables authentication bypass (CVSS 9.1) and CVE-2024-8957 allows OS command injection (CVSS 9.8), potentially permitting remote code execution and device takeover. ValueHD/PTZOptics has released firmware version 6.3.40 to address these flaws; organizations are advised to apply patches immediately, avoid exposing cameras directly to the internet, implement network segmentation and monitoring, and follow incident response procedures.**
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
