Security Advisory
CVE-2025-12463
9.8
CRITICAL
Vulnerability Description
An unauthenticated SQL Injection was discovered within the Geutebruck G-Cam E-Series Cameras through the `Group` parameter in the `/uapi-cgi/viewer/Param.cgi` script. This has been confirmed on the EFD-2130 camera running firmware version 1.12.0.19.
Published Date
November 3, 2025
Official Source
NIST NVD Advisory