CVE-2018-7891 PUBLISHED CVSS 6.800000190734863 MEDIUM

The Milestone XProtect Video Management Software (Corporate, Expert, Professional+, Express+, Essential+) 2016 R1 (10.0.a) to 2018 R1 (12.1a) contains .NET Remoting endpoints that are vulnerable to deserialization attacks resulting in remote code execution.

EPSS 2.68% · 85.7th percentile

Risk Scores

CVSS v2.0
6.800000190734863
EPSS Score
2.68%
85.7th percentile

Affected Products

VendorProductVersions
milestonesysxprotect10.0.a, 10.0.a, 10.0.a
n/an/an/a
siemenssiveillance_vms0, 0, 0

Timeline

References

Open in Interactive Console →