The Milestone XProtect Video Management Software (Corporate, Expert, Professional+, Express+, Essential+) 2016 R1 (10.0.a) to 2018 R1 (12.1a) contains .NET Remoting endpoints that are vulnerable to deserialization attacks resulting in remote code execution.

Project Subscriptions

Vendors Products
Milestonesys Subscribe
Xprotect Subscribe
Siemens Subscribe
Siveillance Vms Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2018-19603 The Milestone XProtect Video Management Software (Corporate, Expert, Professional+, Express+, Essential+) 2016 R1 (10.0.a) to 2018 R1 (12.1a) contains .NET Remoting endpoints that are vulnerable to deserialization attacks resulting in remote code execution.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T06:37:59.569Z

Reserved: 2018-03-09T00:00:00.000Z

Link: CVE-2018-7891

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-04-30T15:29:00.287

Modified: 2024-11-21T04:12:56.057

Link: CVE-2018-7891

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses