VIVOTEK A.I CyberSecurity Scoring
VIVOTEK
Company Information
Website:https://http://www.vivotek.com/
Employees number:498
Number of followers:14,836
NAICS:541514
Industry Type:Computer and Network Security
Homepage:vivotek.com
VIVOTEK Risk Score (AI oriented)
Between 750 and 799
VIVOTEKComputer and Network Security
Updated:
01/04/2026
01/04/2026
753/1000
Fair
Baa
VIVOTEK Global Score (TPRM)
xxxx
VIVOTEKComputer and Network Security
Score locked

VIVOTEKFair
Current Score
753Baa (FAIR)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
754
AUGUST 2026
754
JULY 2026
754
JUNE 2026
753
MAY 2026
753
APRIL 2026
753
MARCH 2026
753
FEBRUARY 2026
753
JANUARY 2026
754
Vulnerability
22 Jan 2026 • VIVOTEK
Vivotek: Critical Vivotek Vulnerability Allows Remote Users to Inject Arbitrary Code
Critical Remote Code Execution Flaw in Vivotek Legacy Cameras Exposes Networks to Root-Level Attacks
753
CRITICAL-1
VIV1769095561
Critical Remote Code Execution Flaw in Vivotek Legacy Cameras Exposes Networks to Root-Level Attacks
Akamai researchers have uncovered a severe remote code execution (RCE) vulnerability in Vivotek’s legacy firmware, tracked as CVE-2026-22755, which allows unauthenticated attackers to execute arbitrary commands with root privileges on affected surveillance cameras.
The flaw resides in the upload_map.cgi script, where unsanitized user-supplied filenames are passed to a `system()` call via an insecure `snprintf()` function. By embedding shell metacharacters (e.g., semicolons) in filenames, attackers can inject malicious commands. Exploitation requires five conditions: a file under 5MB, a firmware verification bypass, an intact `/usr/sbin/confclient` binary, non-standard web server environment variables, and access via upload_map.cgi (not file_manager.cgi).
A proof-of-concept (PoC) demonstrated that setting an environment variable like `POST_FILE_NAME="test_firmware.bin; id;"` triggers command execution as root (UID 0). Researchers bypassed firmware validation by crafting files with specific magic bytes (`FF V FF FF` header and `FF K FF FF` footer).
Affected Models & Firmware
The vulnerability impacts 36 camera models across multiple Vivotek product lines, including:
- FD8365, FD9165, FD9371 (firmware versions 0100a–0125c)
- FE9180, FE9191 (0100a–0125c)
- IB9365, IP9165, IP9171 (0100a–0125c)
- MA9321, MS9390, TB9330 (0100a–0125c)
Attack Scenario & Impact
An attacker can remotely upload a malicious firmware file with an embedded command in the filename. When processed by the vulnerable script, the payload executes with root privileges, enabling full system compromise, lateral movement, botnet recruitment, or data exfiltration. The flaw poses a critical IoT security risk, particularly for organizations in critical infrastructure, healthcare, and enterprise environments relying on legacy surveillance systems.
Akamai has released a YARA rule to detect exploitation attempts targeting upload_map.cgi with the `camid` parameter. The vulnerability underscores the dangers of unauthenticated RCE in IoT devices, which can serve as entry points for broader network attacks, including DDoS botnets.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
754
NOVEMBER 2025
754
OCTOBER 2025
754
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for VIVOTEK ??
What was VIVOTEK's A.I Rankiteo Cyber Score in August 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in July 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in June 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in May 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in April 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in March 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in February 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in January 2026 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in December 2025 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in November 2025 ??
What was VIVOTEK's A.I Rankiteo Cyber Score in October 2025 ??
What is the average per-incident point impact on VIVOTEK's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with VIVOTEK ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view VIVOTEK's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?