Aggregates CVE and security vulnerability intelligence across all kiloview-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Historical issues mainly involve vendor risk cross-site scripting and vendor risk denial of service and related security problems, affecting vendor surface production workloads and vendor surface software deployment scenarios.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-63560 | An issue in KiloView Dual Channel 4k HDMI & 3G-SDI HEVC Video Encoder Firmware v.1.20.0006 allows a remote attacker to cause a denial of service via the systemctrl API System/reFactory component. | [email protected] | 7.5 | 0.51% | 2025-11-06 | 2026-06-17 |
| CVE-2023-41922 | A 'Cross-site Scripting' (XSS) vulnerability, characterized by improper input neutralization during web page generation, has been discovered. This vulnerability allows for Stored XSS attacks to occur. Multiple areas within the administration interface of the webserver lack adequate input validation, resulting in multiple instances of Stored XSS vulnerabilities. | [email protected] | 7.2 | 0.24% | 2024-07-02 | 2026-06-17 |
| CVE-2023-41919 | Hardcoded credentials are discovered within the application's source code, creating a potential security risk for unauthorized access. | [email protected] | 9.8 | 0.42% | 2024-07-02 | 2026-06-17 |