Executive Summary

Informations
Name CVE-2025-1688 First vendor Publication 2025-04-15
Vendor Cve Last vendor Modification 2025-04-15

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

Milestone Systems has discovered a security vulnerability in Milestone XProtect installer that resets system configuration password after the upgrading from older versions using specific installers.

The system configuration password is an additional, optional protection that is enabled on the Management Server.

To mitigate the issue, we highly recommend updating system configuration password via GUI with a standard procedure.

Any system upgraded with 2024 R1 or 2024 R2 release installer is vulnerable to this issue.

Systems upgraded from 2023 R3 or older with version 2025 R1 and newer are not affected.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-1688

Sources (Detail)

https://supportcommunity.milestonesys.com/KBRedir?art=000069835&lang=en_US
Source Url

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2025-05-27 02:51:22
  • First insertion