CVEs we hold for Milesight
Records whose assigning authority named Milesight as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-28747Milesight Cameras Authorization Bypass Through User-Controlled KeyMilesight MS-Cxx72-FIPKG1
CVE-2025-4043Milesight UG65-868M-EA Improper Access Control for Volatile Memory Containing Boot CodeMilesight UG65-868M-EA
CVE-2024-36392MileSight DeviceHub - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')MileSight DeviceHub
CVE-2024-36388MileSight DeviceHub - CWE-305 Missing Authentication for Critical FunctionMileSight DeviceHub
CVE-2024-27776MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')MileSight DeviceHub
CVE-2023-30467Improper Authorization Vulnerability in Milesight Network Video Recorder (NVR)Milesight NVR MS-Nxxxx-xxC
CVE-2023-30466Authentication Bypass Vulnerability in Milesight Network Video Recorder (NVR)Milesight NVR MS-Nxxxx-xxC
CVE-2023-24506Milesight NCR/Camera CWE-522: Insufficiently Protected CredentialsMilesight NCR/Camera
CVE-2022-3001Vulnerability in Milesight Video Management Systems (VMS)Milesight Video Management Systems
94 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.