ICSA-25-308-02
·
Published 2025-11-04
·
View on CISA ICS-CERT ↗
Survision License Plate Recognition Camera
CVSS 9.8
CRITICAL
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to fully access the system without requiring authentication.
CVEs (1)
Remediations
- Survision has released the following versions for users to update to:
- License Plate Recognition LPR Camera: Firmware version v3.5
- Survision recommends users to enable the configuration password authentication by defining users and roles with minimal rights in the user management system and, where possible, enforce client certificate authentication.
- For future deployments, plan for integration of the new login/password mechanism and update your installation procedures accordingly.
- On previous versions (inferior to 3.5)
- Survision recommends activating the "lock" password in the security parameters and, where possible, enforce client certificate authentication.
- For more information, contact Survision.
Affected Vendors
Survision
Affected Products (1)
Survision
·
License Plate Recognition LPR Camera
vers:all/*
Affected Sectors
Commercial Facilities
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more