CVE-2017-9966: Schneider Electric Pelco Videoxpert

High severity, CVSS 7.1. EPSS: 1.6% chance of exploitation in the next 30 days.

A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.

Affected products

Published 2018-01-02. Last modified 2026-06-17.