Siemens Siveillance Video
Plan PatchCVSS 9.1ICS-CERT ICSA-26-225-09Aug 11, 2026
Siemens
Attack path
Attack VectorNetwork
Auth RequiredHigh
ComplexityLow
User InteractionNone needed
Summary
Siveillance Video Management Servers contain an OS command injection vulnerability that could allow remote code execution. An attacker with valid high-privilege credentials could inject arbitrary commands that execute on the server with service-level privileges. Siemens has released hotfix updates for all three affected product lines.
What this means
What could happen
An attacker with administrative credentials could execute arbitrary code on Siveillance Video servers, potentially enabling them to control video recordings, alter surveillance data, disable monitoring, or pivot to other systems on your network.
Who's at risk
Video surveillance operators and security teams running Siveillance Video Management Servers in municipal utilities, water authorities, and other critical infrastructure. This affects all three current product versions (2023 R3, 2024 R1, and 2025).
How it could be exploited
An attacker with valid administrator or privileged user credentials authenticates to the Siveillance Video Management Server and sends a specially crafted input that triggers a command injection vulnerability. This allows the attacker to execute arbitrary commands with the privileges of the Siveillance service.
Prerequisites
- Valid administrative or high-privilege user credentials for Siveillance Video
- Network access to the Siveillance Video Management Server (typically port 80/443 or management interface)
remotely exploitablerequires high-privilege credentialsaffects surveillance and monitoring systems
Exploitability
Unlikely to be exploited — EPSS score 0.8%
Affected products (3)
3 with fix
ProductAffected VersionsFix Status
Remediation & Mitigation
0/5
Do now
0/1HARDENINGRestrict administrative access to Siveillance Video servers to authorized personnel only and enforce strong password policies for privileged accounts
Schedule — requires maintenance window
0/3Patching may require device reboot — plan for process interruption
HOTFIXUpdate Siveillance Video V2023 R3 to version 23.3 HotfixRev27 or later
HOTFIXUpdate Siveillance Video V2024 R1 to version 24.1 HotfixRev16 or later
HOTFIXUpdate Siveillance Video V2025 to version 25.1 HotfixRev15 or later
Long-term hardening
0/1HARDENINGSegment Siveillance Video Management Servers from other critical process control networks using firewalls or network boundaries
CVEs (1)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/a680dd6e-d8cd-431b-958b-138403664161Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.