Pan-Tilt-Zoom cameras hard-coded default passwords with SSH and telnet enabled
Vulnerability Description
PTZOptics and possibly other ValueHD-based pan-tilt-zoom cameras use hard-coded, default administrative credentials. The passwords can readily be cracked. Many cameras have SSH or telnet listening on all interfaces. The passwords cannot be changed by the user, nor can the SSH or telnet service be disabled by the user.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-35451
Credits & Attribution
No credits recorded in the NVD database.
References
- https://www.cisa.gov/news-events/ics-advisories/icsa-25-162-10
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2025/icsa-25-162-10.json
- https://www.cve.org/CVERecord?id=CVE-2025-35451
- https://www.labs.greynoise.io/grimoire/2024-10-31-sift-0-day-rce/
- https://www.greynoise.io/blog/greynoise-intelligence-discovers-zero-day-vulnerabilities-in-live-streaming-cameras-with-the-help-of-ai
More from PTZOptics
View All →Affected Vendor
PTZOptics
View all reports →