CVE Tools

Mobotix

4 CVEs tracked since 2019. Since Feb 2019, none of them reached CISA KEV.

Mobotix CVEs per month

Feb 2019 to Feb 2019. Point at a month, or focus the strip and use the arrow keys.
Mobotix CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2019-0240

Products

The products that kept showing up in Mobotix's monthly top three, with their CVEs summed over those months.

  1. S14 Firmware41 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Mobotix.

  1. CVE-2023-34873On MOBOTIX P3 cameras before MX-V4.7.2.18 and Mx6 cameras before MX-V5.2.0.61, the tcpdump feature does not properly validate input, which allows authenticated users to execute code.8.8
  2. CVE-2025-0576Mobotix M15 player cross site scripting4.3
  3. CVE-2024-47917Mobotix - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7.5
  4. CVE-2022-30018Mobotix Control Center (MxCC) through 2.5.4.5 has Insufficiently Protected Credentials, Storing Passwords in a Recoverable Format via the MxCC.ini config file. The credential storage method in this...8.8
  5. CVE-2019-12502There is a lack of CSRF countermeasures on MOBOTIX S14 MX-V4.2.1.61 cameras, as demonstrated by adding an admin account via the /admin/access URI.8.8
  6. CVE-2019-7675An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. The default management application is delivered over cleartext HTTP with Basic Authentication, as demonstrated by the /admin/index.html ...7.5
  7. CVE-2019-7674An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. /admin/access accepts a request to set the "aaaaa" password, considered insecure for some use cases, from a user.9.8
  8. CVE-2019-7673An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. Administrator Credentials are stored in the 13-character DES hash format.7.5
  9. CVE-2009-5154An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices. There is a default password of meinsm for the admin account.9.8
  10. CVE-2006-2490Multiple cross-site scripting (XSS) vulnerabilities in Mobotix IP Network Cameras M1 1.9.4.7 and M10 2.0.5.2, and other versions before 2.2.3.18 for M10/D10 and 3.0.3.31 for M22, allow remote attac...4.3

The record

Peak rank
#76 in Feb 2019
Busiest month shown
Feb 2019, 4 CVEs
Months with a KEV entry
0 since Feb 2019
Monthly snapshots
1 since 2019
Mobotix's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store