PT-2026-1854 · Vivotek · Vivotek Ip7137
Szymon Paszun
·
Published
2026-01-09
·
Updated
2026-01-09
·
CVE-2025-66050
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Vivotek IP7137 camera versions prior to firmware version 0200a
Description
The Vivotek IP7137 camera, with firmware version 0200a, does not require a password by default when logging in as an administrator. Although setting a password is possible, the user interface does not prompt for one. The vendor has not responded to reports regarding this issue, and a fix is not expected due to the product being in its End-Of-Life phase.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vivotek Ip7137