PT-2026-1495 · Digitalzoomstudio · Dzs Video Gallery

Published

2026-01-06

·

Updated

2026-01-06

·

CVE-2025-47553

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Digital zoom studio DZS Video Gallery versions through 12.25
Description A flaw exists in Digital zoom studio DZS Video Gallery that allows for object injection due to deserialization of untrusted data. This issue could potentially allow an attacker to compromise the system by manipulating serialized data.
Recommendations Versions prior to 12.25 should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2025-47553

Affected Products

Dzs Video Gallery