Security advisories for the devices you run.
CVEs and firmware advisories for cameras, recorders and access systems — with severity, affected products, remediation, and the NDAA-compliant replacement when a banned brand is involved.
HighRead →HighRead →CriticalRead →MediumRead →MediumRead →CriticalRead →HighRead →HighRead →CriticalRead →CriticalRead →
Hard-coded Cryptographic Key in Hanwha Wisenet Device Manager (CVE-2025-52601)
Hanwha VisionCVE-2025-52601Dec 26, 2025NDAA-banned
Dahua IP Cameras and PTZ: Unauthenticated Buffer Overflow Enables RCE
Dahua TechnologyCVE-2025-31700Jul 23, 2025NDAA-banned
Critical RCE in Axis Camera Station Pro and Device Manager (CVE-2025-30023)
Axis CommunicationsCVE-2025-30023Jul 11, 2025NDAA-banned
Cross-Site Request Forgery in i-PRO WV-X/S/U Network Cameras (CVE-2025-36513)
i-PROCVE-2025-36513May 30, 2025NDAA-banned
System Configuration Password Reset on Upgrade in Milestone XProtect (CVE-2025-1688)
Milestone SystemsCVE-2025-1688Apr 15, 2025NDAA-banned
Software House iSTAR Door Controllers: Unauthenticated ICU Communications Allow Door Manipulation
Johnson Controls / Software House (Sensormatic)CVE-2024-32752Jun 6, 2024
Hikvision NVRs: Authenticated Command Injection Allows Arbitrary Command Execution
HikvisionCVE-2024-29949Apr 2, 2024NDAA-banned
Authenticated OS Command Injection in Bosch IP Cameras (CVE-2023-39509)
BoschCVE-2023-39509Dec 13, 2023NDAA-banned
HID Mercury LP/EP Intelligent Controllers: Unauthenticated Buffer Overflow Enables Remote Code Execution and Door Control
HID Global (Mercury) / LenelS2 / CarrierCVE-2022-31481Jun 6, 2022
Hikvision IP Cameras: Unauthenticated Command Injection (CVE-2021-36260) Actively Exploited
HikvisionCVE-2021-36260Sep 18, 2021NDAA-banned
Stay ahead of it
Scan your fleet for vulnerable or banned devices.
Tell us what you need secured. We'll confirm compliance, design the system, and quote it — no payment up front.
