CVE-2025-35451: Multicam-Systems Mcamii Ptz Firmware
Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.
PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The passwords can readily be cracked. Many cameras have SSH or telnet listening on all interfaces. The passwords cannot be changed by the user, nor can the SSH or telnet service be disabled by the user.
Affected products
- Multicam-Systems Mcamii Ptz Firmware: any version
- PTZOptics NDI Fixed Camera Firmware: up to and including 7.2.94
- PTZOptics PT12X-NDI-Xx Firmware: up to and including 6.3.34
- PTZOptics PT12X-Sdi-Xx-g2 Firmware: up to and including 6.3.34
- PTZOptics PT12X-USB-Xx-g2 Firmware: up to and including 6.2.81
- PTZOptics PT12X-Zcam Firmware: up to and including 7.2.76
- PTZOptics PT20X-NDI-Xx Firmware: up to and including 6.3.20
- PTZOptics PT20X-Sdi-Xx-g2 Firmware: up to and including 6.3.20
- PTZOptics PT20X-USB-Xx-g2 Firmware: up to and including 6.2.73
- PTZOptics PT20X-Zcam Firmware: up to and including 7.2.82
- PTZOptics PT30X-NDI-Xx Firmware: up to and including 6.3.30
- PTZOptics PT30X-Sdi-Xx-g2 Firmware: up to and including 6.3.30
- PTZOptics Pteptz-NDI-Zcam-g2 Firmware: up to and including 8.1.81
- PTZOptics Pteptz-Zcam-g2 Firmware: up to and including 8.1.81
- PTZOptics Ptvl-Zcam Firmware: up to and including 7.2.79
- PTZOptics Vl Fixed Camera Firmware: up to and including 7.2.94
- Smtav BA12-N Firmware: any version
- Smtav BA12S Firmware: any version
- Smtav BA20-N Firmware: any version
- Smtav BA20S Firmware: any version
- Smtav BA30-N Firmware: any version
- Smtav BA30S Firmware: any version
- Smtav BV20S Firmware: any version
- Smtav BV30S Firmware: any version
- Smtav BX20N Firmware: any version
- and 26 more
Published 2025-09-05. Last modified 2026-06-17.