Milestone Systems A/S
First CVE: Oct 8, 2024Active for: 2 years
5
CVEs Published
More CVEs Published than 15% of tracked CNAs
1.7
Avg CVEs / Year
More Avg CVEs / Year than 10% of tracked CNAs
7.1
Avg CVSS Score
Higher Avg CVSS Score than 48% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Self-Reporting Analysis
Of all the CVEs published by Milestone Systems A/S as a CNA, 0.0% affect products that Milestone Systems A/S develops as a vendor.
100.0%
Self-reported: 0Third-party: 5
Of all the CVEs published that affect products developed by Milestone Systems A/S, 0.0% are self-published by Milestone Systems A/S as a CNA.
100.0%
Self-published: 0Published by other CNAs: 1
Trends Over Time
The number and severity of CVEs published by Milestone Systems A/S over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 8, 2024
21 months ago
Most Recent CVE
Jul 14, 2026
9 days ago
Top CVEs
All CVEs published by Milestone Systems A/S as a CNA, regardless of affected vendor or product.
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-3014CRITICAL Milestone
has released a new version of XProtect® (and several cumulative patch updates)
which fix security vulnerability in Management Server API.
The vulnerability
causes user | Jul 14, 2026 | 9.1 | 39 | NO | NO |
CVE-2025-0836MEDIUM Missing Authorization vulnerability in Milestone Systems XProtect VMS allows users with read-only access to Management Server to have full read/write access to MIP Webhooks API. | Dec 16, 2025 | 6.3 | 22 | NO | NO |
CVE-2024-12569HIGH Disclosure
of sensitive information in a Milestone XProtect Device Pack driver’s log file for third-party cameras, allows an attacker to read camera
credentials stored in the Recor | Dec 19, 2024 | 7.8 | 22 | NO | NO |
CVE-2024-3506MEDIUM A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server unde | Oct 8, 2024 | 6.7 | 22 | NO | NO |
CVE-2025-1688MEDIUM Milestone Systems has discovered a
security vulnerability in Milestone XProtect installer that resets system
configuration password after the upgrading from older versions using sp | Apr 15, 2025 | 5.5 | 18 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA5 CVEs
60%
20%
20%
Severity distribution among all CVEs352,101 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (20.0%)
Network3 (60.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (20.0%)
Attack Complexity
Low2 (40.0%)
High3 (60.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low2 (40.0%)
High2 (40.0%)
None1 (20.0%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Milestone Systems A/S as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Milestone Systems A/S as a CNA — matched by CVE ID, not by organization name.