Security Advisory

CVE-2025-35451

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-09-05 17:43:53
Last updated 2025-09-08 18:08:29
Assigner cisa-cg
State PUBLISHED

Description

PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The passwords can readily be cracked. Many cameras have SSH or telnet listening on all interfaces. The passwords cannot be changed by the user, nor can the SSH or telnet service be disabled by the user.