SSA-625934 PUBLISHED CVSS 6.300000190734863 MEDIUM

Missing Authorization vulnerability in Milestone Systems XProtect VMS allows users with read-only access to Management Server to have full read/write access to MIP Webhooks API.

Risk Scores

CVSS v3.1
6.300000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Affected Products

VendorProductVersions
SiemensSiveillance Video V2025
SiemensSiveillance Video V2023 R1
SiemensSiveillance Video V2024 R1
SiemensSiveillance Video V2023 R3
SiemensSiveillance Video V2023 R2

Timeline

References

Open in Interactive Console →