CVE-2025-64770
Severity CVSS v4.0:
HIGH
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
20/11/2025
Last modified:
21/11/2025
Description
The affected products allow unauthenticated access to Open Network Video Interface Forum (ONVIF) services, which may allow an attacker unauthorized access to camera configuration information.
Impact
Base Score 4.0
7.00
Severity 4.0
HIGH
Base Score 3.x
6.80
Severity 3.x
MEDIUM



