CVE-2025-52598

Severity
6.3MEDIUM
EPSS
0.0%
top 97.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26

Description

Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw that camera's client service does not perform certificate validation. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

CVSS vector

CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Affected Packages257 packages

🔴Vulnerability Details

2
GHSA
GHSA-3679-62vm-qq5r: Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has found a flaw t2025-12-26
CVEList
Insufficient certificate validation2025-12-26
CVE-2025-52598 (MEDIUM CVSS 6.3) | Cybersecurity Nozomi Networks Labs | cvebase.io