PT-2025-46660 · Simicam+2 · Simicam+2

Published

2025-11-12

·

Updated

2026-01-05

·

CVE-2025-63667

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SIMICAM versions 1.16.41-20250725 KEVIEW versions 1.14.92-20241120 ASECAM versions 1.14.10-20240725
Description An access control issue exists that allows attackers to access sensitive API endpoints without authentication. The affected products are SIMICAM, KEVIEW, and ASECAM.
Recommendations SIMICAM version 1.16.41-20250725: At the moment, there is no information about a newer version that contains a fix for this vulnerability. KEVIEW version 1.14.92-20241120: At the moment, there is no information about a newer version that contains a fix for this vulnerability. ASECAM version 1.14.10-20240725: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-63667

Affected Products

Asecam
Keyview
Simicam