PT-2025-43512 · Vilar · Vilar Vs-Ipc1002 Ip Cameras

Szymon Paszun

·

Published

2025-10-23

·

Updated

2025-11-04

·

CVE-2025-53701

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Vilar VS-IPC1002 IP cameras (affected versions not specified)
Description Vilar VS-IPC1002 IP cameras are susceptible to Reflected Cross-Site Scripting (XSS) attacks. This occurs because parameters within GET requests sent to the /cgi-bin/action API endpoint are not adequately sanitized. This lack of sanitization allows attackers to potentially target logged-in administrator users.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-53701

Affected Products

Vilar Vs-Ipc1002 Ip Cameras