CVE-2024-3506: Milestone Systems Xprotect Vms
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server under strict conditions.
Affected products
- Milestone Systems Xprotect Vms: up to and including 13.1a
Published 2024-10-08. Last modified 2026-06-17.