๐Ÿ” CVE Alert

CVE-2026-75969

UNKNOWN 0.0

PTZOptics Missing Authentication in Firmware Upload

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Missing authentication for critical function vulnerability for all PTZOptics cameras and the Firmware Upgrade Tool - Firmware Update modules. A missing authentication vulnerability in the firmware update mechanism of affected PTZOptics cameras allows an unauthenticated user to install modified firmware on the device without administrator credentials. This vulnerability allows attackers to upload modified firmware to the device without admin credentials. This issue affects: * Move 4K 12X before: 0.0.98 * Move 4K 20X before: 0.1.33 * Move 4K 30X before: 2.1.17 * Link 4K 12X before: 0.0.99 * Link 4K 20X before: 0.1.37 * Link 4K 30X before: 2.1.18 * Move SE 12X before: 9.1.66 * Move SE 20X before: 9.1.44 * Move SE 30X before: 9.1.46 * Studio 4K 12X before: 8.3.32 * Studio 4K 20X before: 8.3.32 * Studio SE 12X before: 8.3.32 * Studio SE 20X before: 8.3.32 * All Generation 2 cameras, including: PT12X-SDI-GY-G2, PT12X-SDI-WH-G2, PT12X-NDI-GY-G2, PT12X-NDI-WH-G2; PT12X-USB-GY-G2, PT12X-USB-WH-G2; PT20X-SDI-GY-G2, PT20X-SDI-WH-G2, PT20X-NDI-GY-G2, PT20X-NDI-WH-G2; PT20X-USB-GY-G2, PT20X-USB-WH-G2; PT30X-SDI-GY-G2, PT30X-SDI-WH-G2, PT30X-NDI-GY-G2, PT30X-NDI-WH-G2; PTVL-ZCAM, PTVL-NDI-ZCAM; PTEPTZ-ZCAM-G2, PTEPTZ-NDI-ZCAM-G2; PT12X-ZCAM, PT12X-NDI-ZCAM; PT20X-ZCAM, PT20X-NDI-ZCAM; Studio Pro - All versions * Upgrade Tool - All versions

CWE CWE-306
Vendor ptzoptics
Product move 4k 12x
Published Sep 30, 2026
Stay Ahead of the Next One

Get instant alerts for ptzoptics move 4k 12x

Be the first to know when new unknown vulnerabilities affecting ptzoptics move 4k 12x are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

PTZOptics / Move 4K 12X
0 < 0.0.98
PTZOptics / Move 4K 20X
0 < 0.1.33
PTZOptics / Move 4K 30X
0 < 2.1.17
PTZOptics / Link 4K 12X
0 < 0.0.99
PTZOptics / Link 4K 20X
0 < 0.1.37
PTZOptics / Link 4K 30X
0 < 2.1.18
PTZOptics / Move SE 12X
0 < 9.1.66
PTZOptics / Move SE 20X
0 < 9.1.44
PTZOptics / Move SE 30X
0 < 9.1.46
PTZOptics / Studio 4K 12X
0 < 8.3.32
PTZOptics / Studio 4K 20X
0 < 8.3.32
PTZOptics / Studio SE 12X
0 < 8.3.32
PTZOptics / Studio SE 20X
0 < 8.3.32
PTZOptics / PT12X-SDI-GY-G2, PT12X-SDI-WH-G2, PT12X-NDI-GY-G2, PT12X-NDI-WH-G2
0
PTZOptics / PT12X-USB-GY-G2, PT12X-USB-WH-G2
0
PTZOptics / PT20X-SDI-GY-G2, PT20X-SDI-WH-G2, PT20X-NDI-GY-G2, PT20X-NDI-WH-G2
0
PTZOptics / PT20X-USB-GY-G2, PT20X-USB-WH-G2
0
PTZOptics / PT30X-SDI-GY-G2, PT30X-SDI-WH-G2, PT30X-NDI-GY-G2, PT30X-NDI-WH-G2
0
PTZOptics / PTVL-ZCAM, PTVL-NDI-ZCAM
0
PTZOptics / PTEPTZ-ZCAM-G2, PTEPTZ-NDI-ZCAM-G2
0
PTZOptics / PT12X-ZCAM, PT12X-NDI-ZCAM
0
PTZOptics / PT20X-ZCAM, PT20X-NDI-ZCAM
0
PTZOptics / Studio Pro
0
PTZOptics / Upgrade Tool
0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
psirt.havsys.com: https://psirt.havsys.com/

Credits

Haverford Systems Inc. & PTZOptics would like to thank Jaroslav Svoboda of CESNET for responsibly reporting this vulnerability.