CVE-2025-12556Disclosure

LOWCVSS 8.7 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

An argument injection vulnerability exists in the affected product that could allow an attacker to execute arbitrary code within the context of the host machine.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-88

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 5 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 2 mentions (2026-01-30); latest day: 1
  • 5 total mentions across 4 days

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-01-29: 1Mentions · 2026-01-30: 2Mentions · 2026-03-06: 1Mentions · 2026-03-09: 1Patch / Workaround · 2026-01-29: 1Patch / Workaround · 2026-01-30: 2Technical Details · 2026-01-29: 1Technical Details · 2026-01-30: 2Technical Details · 2026-03-06: 1Technical Details · 2026-03-09: 101-2901-3003-0603-09
Signal classification2 categories
Disclosure
360.0%
Patch
240.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-01-291
Patch1
2026-01-302
Disclosure1Patch1
2026-03-061
Disclosure1
2026-03-091
Disclosure1
Full discourse5 posts
  • Misbar | مسبار@MisbarSec
    Disclosure

    خطر اختراق كامل لأجهزة الكمبيوتر عبر كاميرات IDIS ثغرة أمنية خطيرة في كاميرات IDIS IP تسمح للمهاجمين بالسيطرة الكاملة على جهاز الضحية بنقرة واحدة. يتم استغلال الثغرة، المسماة CVE-2025-12556، للوصول غير المصرح به. هذا يشكل تهديدًا خطيرًا على خصوصية وأمن البيانات. 💡 خطوات الحماية: - تأكد من تحديث كاميرات IDIS IP الخاصة بك لأحدث إصدار. - قم بمراجعة إعدادات الأمان لجهاز الكمبيوتر الخاص بك. - كن حذرًا من الروابط المشبوهة التي تصلك. 🔗 https://cybersecuritynews.com/critical-idis-ip-cameras-one-click-vulnerability/ #الأمن_السيبراني #IDIS #CVE

    Post summary

    The post announces CVE-2025-12556, a severe vulnerability in IDIS IP cameras that lets attackers gain full control with one click; it urges users to update firmware and review security settings.

    0001062
    51 followersView on X
  • B2B Cyber Security.de@B2bCyber
    Disclosure

    https://ift.tt/TVx1MSR Vulnerability in video surveillance systems Security researchers have discovered a one-click remote code execution vulnerability (CVE-2025-12556) in the IDIS Cloud Manager (ICM) Viewer. A single careless click by the victim is all it takes to execute m… https://t.co/9IOQyBG4u8

    Post summary

    Researchers announced a one-click RCE vulnerability (CVE-2025-12556) in the IDIS Cloud Manager Viewer, allowing attackers to execute code with a single click.

    0000064
    1.7K followersView on X
  • B2B Cyber Security.de@B2bCyber
    Disclosure

    Schwachstelle in Videoüberwachungssystemen https://ift.tt/oI8gtXW Sicherheitsforscher haben eine 1-Click-Remote-Code-Execution-Schwachstelle (CVE-2025-12556) im IDIS Cloud Manager (ICM) Viewer entdeckt. Es reicht also ein einziger unbedachter Klick des Opfers aus, um Schadco…

    Post summary

    Researchers have disclosed a 1‑click RCE vulnerability (CVE‑2025‑12556) affecting IDIS Cloud Manager’s viewer, with details confirming exploitability but no PoC, exploit script, or mitigation yet.

    0000084
    1.7K followersView on X
  • The Daily Tech Feed@dailytechonx
    Patch

    Critical vulnerability in IDIS IP cameras (CVE-2025-12556) allows full system compromise with a single click. Update to ICM Viewer v1.7.1 immediately! Link: https://thedailytechfeed.com/critical-flaw-in-idis-ip-cameras-allows-system-compromise-with-single-click-cve-2025-12556-issued/ #Security #Camera #Update #Hack #Exploit #Risk #Alert #Patch #Network #System #Device #Technology #Breach #Software #Threat #Firmware #Cyber #Safety #Protection #Digital

    Post summary

    The post highlights CVE‑2025‑12556, a vulnerability that permits full system compromise via a single click, and urges users to apply the ICM Viewer v1.7.1 patch immediately.

    00000293
    239 followersView on X
  • Cyber Netsec IO@NetSecIO
    Patch

    A critical 1-click RCE (CVE-2025-12556) found in IDIS Cloud Manager viewer. Attackers can execute code via a malicious link. CVSS score of 8.7. Users urged to update to v1.7.1 or uninstall immediately. 💻 #RCE #Vulnerability #CyberSecurity 🔗 https://cyber.netsecops.io/articles/critical-rce-flaw-cve-2025-12556-in-idis-cloud-manager-viewer/?utm_source=twitter&utm_medium=social&utm_campaign=twitter_auto

    Post summary

    The tweet discloses a critical one‑click RCE flaw (CVE‑2025‑12556) in IDIS Cloud Manager and directs users to apply the v1.7.1 patch or uninstall the software to mitigate the vulnerability.

    0000062
    40 followersView on X

Explore more