Home

Description

A critical severity vulnerability has been identified in the ALPR Manager role of Security Center that could allow attackers to gain administrative access to the Genetec Security Center system. The Genetec engineering team discovered this issue internally. There is currently no evidence that this vulnerability has been exploited in the wild.

PUBLISHED Reserved 2025-04-16 | Published 2025-10-30 | Updated 2025-10-30 | Assigner Genetec




CRITICAL: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-284: Improper Access Control

Product status

Default status
unaffected

>=5.9.5.10 (semver)
unaffected

<5.9.5.10 (semver)
affected

>=5.10.4.29 (semver)
unaffected

>=5.10.0.0 <5.10.4.29 (semver)
affected

>=5.11.3.25 (semver)
unaffected

>=5.11.0.0 <5.11.3.25 (semver)
affected

>=5.12.2.12 (semver)
unaffected

>=5.12.0.0 <5.12.2.12 (semver)
affected

>=5.13.2.3 (semver)
unaffected

>=5.13.0.0 <5.13.2.3 (semver)
affected

References

resources.genetec.com/...lpr-manager-role-of-security-center

ressources.genetec.com/...stionnaire-rapi-de-security-center

cve.org (CVE-2025-43027)

nvd.nist.gov (CVE-2025-43027)

Download JSON