CVE-2024-8957
PTZOptics NDI and SDI Cameras Command Injection via NTP Address Configuration
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- September 17, 2024
- Published Date
- September 17, 2024
- Last Updated
- November 04, 2024
- Vendor
- PTZOptics
- Product
- PT30X-SDI, PT30X-NDI
- Description
- PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not sufficiently validate the ntp_addr configuration value which may lead to arbitrary command execution when ntp_client is started. When chained with CVE-2024-8956, a remote and unauthenticated attacker can execute arbitrary OS commands on affected devices.
- Tags
- Exploitation
- active
- Technical Impact
- total
- Exploited in the Wild
- Yes (2024-11-04 00:00:00 UTC) Source
cisa
CVSS Scores
CVSS v3.1
7.2 - HIGH
Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
SSVC Information
Exploit Status
References
Known Exploited Vulnerability Information
Source | Added Date |
---|---|
CISA | 2024-11-04 00:00:00 UTC |
Recent Mentions
PTZOptics and Other Pan-Tilt-Zoom Cameras
Source: All CISA Advisories • Published: 2025-06-12 12:00:00 UTC
View CSAF
1. EXECUTIVE SUMMARY
CVSS v4 9.3
ATTENTION: Exploitable remotely/low attack complexity
Vendor: ValueHD, PTZOptics, multiCAM Systems, SMTAV
Equipment: Various pan-tilt-zoom cameras
Vulnerabilities: Improper Authentication, Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Use of Hard-coded Credentials
2. RISK EVALUATION
Successful exploitation of these vulnerabilities could allow an attacker to leak sensitive data, execute arbitrary commands, and access the admin web interface using hard-coded credentials.
3. TECHNICAL DETAILS
3.1 AFFECTED PRODUCTS
The following ValueHD, PTZOptics, multiCAM Systems, and SMTAV products are affected:
PTZOptics PT12X-SDI-xx-G2: Versions 6.3.34 and prior (CVE-2025-35451)
PTZOptics PT12X-NDI-xx: Versions 6.3.34 and prior (CVE-2025-35451)
PTZOptics PT12X-USB-xx-G2: Versions 6.2.81 and prior (CVE-2025-35451)
PTZOptics PT20X-SDI-xx-G2: Versions 6.3.20 and prior (CVE-2025-35451)
PTZOptics PT20X-NDI-xx: Versions 6.3.20 and prior (CVE-2025-35451)
PTZOptics PT20X-USB-xx-G2: Versions 6.2.73 and prior (CVE-2025-35451)
PTZOptics PT30X-SDI-xx-G2: Versions 6.3.30 and prior (CVE-2025-35451)
PTZOptics PT30X-NDI-xx: Versions 6.3.30 and prior (CVE-2025-35451)
PTZOptics PT12X-ZCAM: Versions 7.2.76 and prior (CVE-2025-35451)
PTZOptics PT20X-ZCAM: Versions 7.2.82 and prior (CVE-2025-35451)
PTZOptics PTVL-ZCAM: Versions 7.2.79 and prior (CVE-2025-35451)
PTZOptics PTEPTZ-ZCAM-G2: Versions 8.1.81 and prior (CVE-2025-35451)
PTZOptics PTEPTZ-NDI-ZCAM-G2: Versions 8.1.81 and prior (CVE-2025-35451)
PTZOptics PT12X-SDI-xx-G2: All versions (CVE-2025-35452)
PTZOptics PT12X-NDI-xx: All versions (CVE-2025-35452)
PTZOptics PT12X-USB-xx-G2: All versions (CVE-2025-35452)
PTZOptics PT20X-SDI-xx-G2: All versions (CVE-2025-35452)
PTZOpticsPT20X-NDI-xx: All versions (CVE-2025-35452)
PTZOptics PT20X-USB-xx-G2: All versions (CVE-2025-35452)
PTZOptics PT30X-SDI-xx-G2: All versions (CVE-2025-35452)
PTZOptics PT30X-NDI-xx:...
Timeline
-
CVE ID Reserved
-
CVE Published to Public
-
Added to KEVIntel