Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
VIVOTEK

VIVOTEK Vendor Cyber Rating & Cyber Score

vivotek.com

VIVOTEK specializes in video surveillance solutions with a full portfolio of IP cameras, NVR, video management software, and surveillance cloud service, especially competitive in AI-enhanced imaging quality and content analytics. This year, VIVOTEK’s Make Tomorrow Easier campaign aims to embody its slogan “We Get The Picture,” striving to be the most reliable security brand globally.


VIVOTEK A.I CyberSecurity Scoring

VIVOTEK
Company Information
Website:https://http://www.vivotek.com/
Employees number:498
Number of followers:14,836
NAICS:541514
Industry Type:Computer and Network Security
Homepage:vivotek.com
VIVOTEK Risk Score (AI oriented)
Between 750 and 799
logo
VIVOTEKComputer and Network Security
Updated:
01/04/2026
753/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
VIVOTEK Global Score (TPRM)
xxxx
logo
VIVOTEKComputer and Network Security
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

VIVOTEK
VIVOTEKFair
Current Score
753Baa (FAIR)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
754Before Incident
AUGUST 2026
754Before Incident
JULY 2026
754Before Incident
JUNE 2026
753Before Incident
MAY 2026
753Before Incident
APRIL 2026
753Before Incident
MARCH 2026
753Before Incident
FEBRUARY 2026
753Before Incident
JANUARY 2026
754Before Incident
Vulnerability
22 Jan 2026VIVOTEK
Vivotek: Critical Vivotek Vulnerability Allows Remote Users to Inject Arbitrary Code

Critical Remote Code Execution Flaw in Vivotek Legacy Cameras Exposes Networks to Root-Level Attacks

753After Incident
CRITICAL-1
VIV1769095561
Critical Remote Code Execution Flaw in Vivotek Legacy Cameras Exposes Networks to Root-Level Attacks Akamai researchers have uncovered a severe remote code execution (RCE) vulnerability in Vivotek’s legacy firmware, tracked as CVE-2026-22755, which allows unauthenticated attackers to execute arbitrary commands with root privileges on affected surveillance cameras. The flaw resides in the upload_map.cgi script, where unsanitized user-supplied filenames are passed to a `system()` call via an insecure `snprintf()` function. By embedding shell metacharacters (e.g., semicolons) in filenames, attackers can inject malicious commands. Exploitation requires five conditions: a file under 5MB, a firmware verification bypass, an intact `/usr/sbin/confclient` binary, non-standard web server environment variables, and access via upload_map.cgi (not file_manager.cgi). A proof-of-concept (PoC) demonstrated that setting an environment variable like `POST_FILE_NAME="test_firmware.bin; id;"` triggers command execution as root (UID 0). Researchers bypassed firmware validation by crafting files with specific magic bytes (`FF V FF FF` header and `FF K FF FF` footer). Affected Models & Firmware The vulnerability impacts 36 camera models across multiple Vivotek product lines, including: - FD8365, FD9165, FD9371 (firmware versions 0100a–0125c) - FE9180, FE9191 (0100a–0125c) - IB9365, IP9165, IP9171 (0100a–0125c) - MA9321, MS9390, TB9330 (0100a–0125c) Attack Scenario & Impact An attacker can remotely upload a malicious firmware file with an embedded command in the filename. When processed by the vulnerable script, the payload executes with root privileges, enabling full system compromise, lateral movement, botnet recruitment, or data exfiltration. The flaw poses a critical IoT security risk, particularly for organizations in critical infrastructure, healthcare, and enterprise environments relying on legacy surveillance systems. Akamai has released a YARA rule to detect exploitation attempts targeting upload_map.cgi with the `camid` parameter. The vulnerability underscores the dangers of unauthenticated RCE in IoT devices, which can serve as entry points for broader network attacks, including DDoS botnets.
INCIDENT DETAILS -
TYPE
Remote Code Execution (RCE)
IMPACT
Systems Affected: 36 camera models across multiple Vivotek product linesOperational Impact: Full system compromise, lateral movement, botnet recruitment, or data exfiltration
DATA BREACH
Data Exfiltration: Possible data exfiltration
DECEMBER 2025
754Before Incident
NOVEMBER 2025
754Before Incident
OCTOBER 2025
754Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for VIVOTEK ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in August 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in July 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in June 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in May 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in April 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in March 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in February 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in January 2026 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in December 2025 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in November 2025 ?
?
What was VIVOTEK's A.I Rankiteo Cyber Score in October 2025 ?
?
What is the average per-incident point impact on VIVOTEK's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with VIVOTEK ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view VIVOTEK's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?