Description

A vulnerability in Longwatch devices allows unauthenticated HTTP GET requests to execute arbitrary code via an exposed endpoint, due to the absence of code signing and execution controls. Exploitation results in SYSTEM-level privileges.

INFO

Published Date :

2025-12-02T19:35:59.252Z

Last Modified :

2025-12-02T21:41:24.753Z

Source :

icscert
AFFECTED PRODUCTS

The following products are affected by CVE-2025-13658 vulnerability.

Vendors Products
Industrial Video Control
  • Longwatch
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-13658.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability