CVE-2017-9966: Schneider Electric Pelco Videoxpert
High severity, CVSS 7.1. EPSS: 1.6% chance of exploitation in the next 30 days.
A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.
Affected products
- Schneider Electric Pelco Videoxpert: before 2.1 (fixed in 2.1)
Published 2018-01-02. Last modified 2026-06-17.