The vendor explicitly identifies these products as affected by this CVE.
- Siveillance Video V2023 R1
- Siveillance Video V2023 R2
- Siveillance Video V2023 R3
- Siveillance Video V2024 R1
- Siveillance Video V2025
- Summary
- Missing Authorization vulnerability in Milestone Systems XProtect VMS allows users with read-only access to Management Server to have full read/write access to MIP Webhooks API.
- Remediation
- Update to V23.1 HotfixRev18 or later version
