CVE-2024-8957

PTZOptics NDI and SDI Cameras Command Injection via NTP Address Configuration

Basic Information

CVE State
PUBLISHED
Reserved Date
September 17, 2024
Published Date
September 17, 2024
Last Updated
November 04, 2024
Vendor
PTZOptics
Product
PT30X-SDI, PT30X-NDI
Description
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not sufficiently validate the ntp_addr configuration value which may lead to arbitrary command execution when ntp_client is started. When chained with CVE-2024-8956, a remote and unauthenticated attacker can execute arbitrary OS commands on affected devices.
Tags
cisa

CVSS Scores

CVSS v3.1

7.2 - HIGH

Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

SSVC Information

Exploitation
active
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (2024-11-04 00:00:00 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2024-11-04 00:00:00 UTC

Recent Mentions

PTZOptics and Other Pan-Tilt-Zoom Cameras

Source: All CISA Advisories • Published: 2025-06-12 12:00:00 UTC

View CSAF 1. EXECUTIVE SUMMARY CVSS v4 9.3 ATTENTION: Exploitable remotely/low attack complexity Vendor: ValueHD, PTZOptics, multiCAM Systems, SMTAV Equipment: Various pan-tilt-zoom cameras Vulnerabilities: Improper Authentication, Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Use of Hard-coded Credentials 2. RISK EVALUATION Successful exploitation of these vulnerabilities could allow an attacker to leak sensitive data, execute arbitrary commands, and access the admin web interface using hard-coded credentials. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS The following ValueHD, PTZOptics, multiCAM Systems, and SMTAV products are affected: PTZOptics PT12X-SDI-xx-G2: Versions 6.3.34 and prior (CVE-2025-35451) PTZOptics PT12X-NDI-xx: Versions 6.3.34 and prior (CVE-2025-35451) PTZOptics PT12X-USB-xx-G2: Versions 6.2.81 and prior (CVE-2025-35451) PTZOptics PT20X-SDI-xx-G2: Versions 6.3.20 and prior (CVE-2025-35451) PTZOptics PT20X-NDI-xx: Versions 6.3.20 and prior (CVE-2025-35451) PTZOptics PT20X-USB-xx-G2: Versions 6.2.73 and prior (CVE-2025-35451) PTZOptics PT30X-SDI-xx-G2: Versions 6.3.30 and prior (CVE-2025-35451) PTZOptics PT30X-NDI-xx: Versions 6.3.30 and prior (CVE-2025-35451) PTZOptics PT12X-ZCAM: Versions 7.2.76 and prior (CVE-2025-35451) PTZOptics PT20X-ZCAM: Versions 7.2.82 and prior (CVE-2025-35451) PTZOptics PTVL-ZCAM: Versions 7.2.79 and prior (CVE-2025-35451) PTZOptics PTEPTZ-ZCAM-G2: Versions 8.1.81 and prior (CVE-2025-35451) PTZOptics PTEPTZ-NDI-ZCAM-G2: Versions 8.1.81 and prior (CVE-2025-35451) PTZOptics PT12X-SDI-xx-G2: All versions (CVE-2025-35452) PTZOptics PT12X-NDI-xx: All versions (CVE-2025-35452) PTZOptics PT12X-USB-xx-G2: All versions (CVE-2025-35452) PTZOptics PT20X-SDI-xx-G2: All versions (CVE-2025-35452) PTZOpticsPT20X-NDI-xx: All versions (CVE-2025-35452) PTZOptics PT20X-USB-xx-G2: All versions (CVE-2025-35452) PTZOptics PT30X-SDI-xx-G2: All versions (CVE-2025-35452) PTZOptics PT30X-NDI-xx:...

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel