PT-2025-44788 · Geutebruck · Geutebruck G-Cam E-Series Cameras

Published

2025-11-03

·

Updated

2025-11-03

·

CVE-2025-12463

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Geutebruck G-Cam E-Series Cameras version 1.12.0.19
Description An unauthenticated SQL Injection exists within the Geutebruck G-Cam E-Series Cameras. The issue is located in the /uapi-cgi/viewer/Param.cgi script through the Group parameter.
Recommendations Update firmware to a version that addresses this issue. As a temporary workaround, restrict access to the /uapi-cgi/viewer/Param.cgi script.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-12463

Affected Products

Geutebruck G-Cam E-Series Cameras