CVE-2023-41917: Kiloview p1/p2

Critical severity, CVSS 10.0. EPSS: 0.7% chance of exploitation in the next 30 days.

Inadequate input validation exposes the system to potential remote code execution (RCE) risks. Attackers can exploit this vulnerability by appending shell commands to the Speed-Measurement feature, enabling unauthorized code execution.

Affected products

  • Kiloview p1/p2: up to and including 4.8.2605
  • Kiloview p1 4g Video Encoder Firmware: any version
  • Kiloview p2 4g Video Encoder Firmware: any version

Published 2024-07-02. Last modified 2026-06-17.