{
  "document": {
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Disclosure is not limited. (TLPv2: TLP:CLEAR)",
      "tlp": {
        "label": "WHITE"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "summary",
        "text": "Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack.\n\nSiemens has released new versions for the affected products and recommends to update to the latest versions.",
        "title": "Summary"
      },
      {
        "category": "general",
        "text": "As a general security measure Siemens strongly recommends to protect network access to affected products with appropriate mechanisms. It is advised to follow recommended security practices in order to run the devices in a protected IT environment.",
        "title": "General Recommendations"
      },
      {
        "category": "general",
        "text": "For further inquiries on security vulnerabilities in Siemens products and solutions, please contact the Siemens ProductCERT: https://www.siemens.com/cert/advisories",
        "title": "Additional Resources"
      },
      {
        "category": "legal_disclaimer",
        "text": "The use of Siemens Security Advisories is subject to the terms and conditions listed on: https://www.siemens.com/productcert/terms-of-use.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "productcert@siemens.com",
      "name": "Siemens ProductCERT",
      "namespace": "https://www.siemens.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "SSA-825228: Potential Remote Code Execution in Siveillance Video Management Servers - HTML Version",
        "url": "https://cert-portal.siemens.com/productcert/html/ssa-825228.html"
      },
      {
        "category": "self",
        "summary": "SSA-825228: Potential Remote Code Execution in Siveillance Video Management Servers - CSAF Version",
        "url": "https://cert-portal.siemens.com/productcert/csaf/ssa-825228.json"
      }
    ],
    "title": "SSA-825228: Potential Remote Code Execution in Siveillance Video Management Servers",
    "tracking": {
      "current_release_date": "2026-08-11T00:00:00.000Z",
      "generator": {
        "engine": {
          "name": "Siemens ProductCERT CSAF Generator",
          "version": "1"
        }
      },
      "id": "SSA-825228",
      "initial_release_date": "2026-08-11T00:00:00.000Z",
      "revision_history": [
        {
          "date": "2026-08-11T00:00:00.000Z",
          "legacy_version": "1.0",
          "number": "1",
          "summary": "Publication Date"
        }
      ],
      "status": "interim",
      "version": "1"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version_range",
                "name": "vers:intdot/<23.3.27",
                "product": {
                  "name": "Siveillance Video V2023 R3 < V23.3.27",
                  "product_id": "1"
                }
              }
            ],
            "category": "product_name",
            "name": "Siveillance Video V2023 R3"
          },
          {
            "branches": [
              {
                "category": "product_version_range",
                "name": "vers:intdot/<24.1.16",
                "product": {
                  "name": "Siveillance Video V2024 R1 < V24.1.16",
                  "product_id": "2"
                }
              }
            ],
            "category": "product_name",
            "name": "Siveillance Video V2024 R1"
          },
          {
            "branches": [
              {
                "category": "product_version_range",
                "name": "vers:intdot/<25.1.15",
                "product": {
                  "name": "Siveillance Video V2025 < V25.1.15",
                  "product_id": "3"
                }
              }
            ],
            "category": "product_name",
            "name": "Siveillance Video V2025"
          }
        ],
        "category": "vendor",
        "name": "Siemens"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-3014",
      "cwe": {
        "id": "CWE-78",
        "name": "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')"
      },
      "notes": [
        {
          "category": "description",
          "text": "Milestone\r\nhas released a new version of XProtect\u00ae (and several cumulative patch updates)\r\nwhich fix security vulnerability in Management Server API.\r\n\r\n\r\n\r\nThe vulnerability\r\ncauses users with edit permissions to the Management Server to be able to\r\nexecute arbitrary code in context of the Management Server Service.",
          "title": "CVE Description"
        }
      ],
      "product_status": {
        "known_affected": [
          "1",
          "2",
          "3"
        ]
      },
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "Update to V23.3 HotfixRev27 or later version",
          "product_ids": [
            "1"
          ],
          "url": "https://support.industry.siemens.com/cs/ww/en/view/109827783/"
        },
        {
          "category": "vendor_fix",
          "details": "Update to V24.1 HotfixRev16 or later version",
          "product_ids": [
            "2"
          ],
          "url": "https://support.industry.siemens.com/cs/ww/en/view/109976123/"
        },
        {
          "category": "vendor_fix",
          "details": "Update to V25.1 HotfixRev15 or later version",
          "product_ids": [
            "3"
          ],
          "url": "https://support.industry.siemens.com/cs/ww/en/view/109988670/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 9.1,
            "baseSeverity": "CRITICAL",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "1",
            "2",
            "3"
          ]
        }
      ],
      "title": "CVE-2026-3014"
    }
  ]
}