PT-2026-1495 · Digitalzoomstudio · Dzs Video Gallery
Published
2026-01-06
·
Updated
2026-01-06
·
CVE-2025-47553
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Digital zoom studio DZS Video Gallery versions through 12.25
Description
A flaw exists in Digital zoom studio DZS Video Gallery that allows for object injection due to deserialization of untrusted data. This issue could potentially allow an attacker to compromise the system by manipulating serialized data.
Recommendations
Versions prior to 12.25 should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dzs Video Gallery