Vivotek manufactures a broad portfolio of network surveillance cameras and related firmware deployed across institutional and commercial security installations, presenting an attack surface concentrated in internet-facing imaging devices. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the appeal of camera systems for reconnaissance, lateral-movement staging, and botnet recruitment. The exposure recurs across product lines such as the FD and PT series cameras and their associated firmware through classic memory-safety and access-control weakness classes, including OS command injection, stack-based and classic buffer overflows, and path-traversal conditions that are typical of embedded imaging firmware with limited code-review discipline. Defenders should inventory Vivotek cameras in their environments, prioritize those exposed to untrusted networks, and apply security updates aggressively, since these devices frequently sit outside the managed-IT refresh cycle. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vivotek over time
Signals from CVEs in this vendor scope (41 CVEs).
41 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-9828CRITICAL '/cgi-bin/admin/testserver.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable to shell command injection, which allows remote attackers to execute any she | Jun 23, 2017 | 9.8 | 76 | NO | NO |
CVE-2017-9829HIGH '/cgi-bin/admin/downloadMedias.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable, which allows remote attackers to read any file on the camera's Linux fi | Jun 23, 2017 | 7.5 | 61 | NO | NO |
CVE-2013-1595CRITICAL A Buffer Overflow vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via a specially crafted packet in the Authorization header field sent to the RTSP service, which | Jan 24, 2020 | 9.8 | 57 | NO | YES |
CVE-2013-1598HIGH A Command Injection vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via the system.ntp parameter to the farseer.out binary file, which cold let a malicious user e | Jan 24, 2020 | 8.8 | 42 | NO | YES |
CVE-2008-4771HIGH Stack-based buffer overflow in VATDecoder.VatCtrl.1 ActiveX control in (1) 4xem VatCtrl Class (VATDecoder.dll 1.0.0.27 and 1.0.0.51), (2) D-Link MPEG4 SHM Audio Control (VAPGDecode | Oct 28, 2008 | 9.3 | 36 | NO | YES |
CVE-2026-30652HIGH A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware version FD8136-VVTK-0300a. T | Jun 2, 2026 | 8.8 | 35 | NO | NO |
CVE-2026-30650HIGH A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmware ver | Jun 2, 2026 | 8.8 | 34 | NO | NO |
CVE-2024-7441CRITICAL ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Vivotek SD9364 VVTK-0103f. It has been declared as critical. This vulnerability affects the function read of the compon | Aug 3, 2024 | 9.8 | 32 | NO | NO |
CVE-2013-1597MEDIUM A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET request, which could let a malicious user obtain user credential | Jan 24, 2020 | 6.5 | 32 | NO | YES |
CVE-2013-4985HIGH Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream | Dec 27, 2019 | 7.5 | 32 | NO | YES |
Signals from CVEs in this vendor scope (41 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vivotek.
Media articles that mention a CVE ID that affects a product developed by Vivotek — matched by CVE ID, not by vendor name.