CVE-2017-15290: Mirasys Video Management System

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Mirasys Video Management System (VMS) 6.x before 6.4.6, 7.x before 7.5.15, and 8.x before 8.1.1 has a login process in which cleartext data is sent from a server to a client, and not all of this data is required for the client functionality.

Affected products

  • Mirasys Video Management System: version 6.2.5 only; version 7.0.1 only; version 7.3.1 only; version 7.3.3 only; version 7.5.2 only; version 7.5.3 only; …

Published 2017-10-12. Last modified 2026-06-17.