Skip to main content
HIGH

CVE-2025-66052

Command injection in Vivotek IP7137 cameras

CVSS v3

7.2

HIGH

EPSS Score

1.5 %

exploit probability, as of 2026-09-25

CISA KEV

No

known exploited

Exploitation

none

SSVC status

Description

Vivotek IP7137 camera with firmware version 0200a is vulnerable to command injection. Parameter "system_ntpIt" used by "/cgi-bin/admin/setparam.cgi" endpoint is not sanitized properly, allowing a user with administrative privileges to perform an attack. Due to CVE-2025-66050, administrative access is not protected by default,  The vendor has not replied to the CNA Possibly all firmware versions are affected. Since the product has met End-Of-Life phase, a fix is not expected to be released.

Technical details

Published
2026-01-09
Last Modified
2026-01-14

Frequently asked questions

What is CVE-2025-66052?

Vivotek IP7137 camera with firmware version 0200a is vulnerable to command injection. Parameter "system_ntpIt" used by "/cgi-bin/admin/setparam.cgi" endpoint is not sanitized properly, allowing a user with administrative privileges to perform an attack. Due to CVE-2025-66050, administrative access is not protected by default,  The vendor has not replied to the CNA Possibly all firmware versions are affected. Since the product has met End-Of-Life phase, a fix is not expected to be released.

Is CVE-2025-66052 actively exploited?

Active exploitation of CVE-2025-66052 has not been confirmed. Its EPSS score was 1.5% on 2026-09-25, the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2025-66052?

CVE-2025-66052 has a CVSS v3 base score of 7.2 (HIGH severity).

Is CVE-2025-66052 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 500 free checks/month · Free API key