Milestone Systems A/S

First CVE: Oct 8, 2024Active for: 2 years
5
CVEs Published
More CVEs Published than 15% of tracked CNAs
1.7
Avg CVEs / Year
More Avg CVEs / Year than 10% of tracked CNAs
7.1
Avg CVSS Score
Higher Avg CVSS Score than 48% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by Milestone Systems A/S as a CNA, 0.0% affect products that Milestone Systems A/S develops as a vendor.

100.0%
Self-reported: 0Third-party: 5

Of all the CVEs published that affect products developed by Milestone Systems A/S, 0.0% are self-published by Milestone Systems A/S as a CNA.

100.0%
Self-published: 0Published by other CNAs: 1

Trends Over Time

The number and severity of CVEs published by Milestone Systems A/S over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 8, 2024
21 months ago
Most Recent CVE
Jul 14, 2026
9 days ago

Top CVEs

All CVEs published by Milestone Systems A/S as a CNA, regardless of affected vendor or product.

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Milestone has released a new version of XProtect® (and several cumulative patch updates) which fix security vulnerability in Management Server API. The vulnerability causes user
Jul 14, 20269.139NONO
Missing Authorization vulnerability in Milestone Systems XProtect VMS allows users with read-only access to Management Server to have full read/write access to MIP Webhooks API.
Dec 16, 20256.322NONO
Disclosure of sensitive information in a Milestone XProtect Device Pack driver’s log file for third-party cameras, allows an attacker to read camera credentials stored in the Recor
Dec 19, 20247.822NONO
A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server unde
Oct 8, 20246.722NONO
Milestone Systems has discovered a security vulnerability in Milestone XProtect installer that resets system configuration password after the upgrading from older versions using sp
Apr 15, 20255.518NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA5 CVEs
Severity distribution among all CVEs352,101 CVEs
MediumHighCritical
Attack Vector
Local1 (20.0%)
Network3 (60.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (20.0%)
Attack Complexity
Low2 (40.0%)
High3 (60.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low2 (40.0%)
High2 (40.0%)
None1 (20.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (5 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Milestone Systems A/S as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Milestone Systems A/S as a CNA — matched by CVE ID, not by organization name.

Top CWEs