---
id: CVE-2026-65422
title: >-
  A flaw in the authorization mechanism for Media Gateway API in Genetec
  Security Center may allow a user with no playback privileges to generate video
  thumbnails.
summary: >-
  A flaw in the authorization mechanism for Media Gateway API in Genetec
  Security Center may allow a user with no playback privileges to generate video
  thumbnails.
severity: medium
cvss: 6.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-862
vendor: Genetec Inc.
product: Genetec Security Center
affected:
  - genetec_security_center <5.12.2.22
  - genetec_security_center <5.13.3.9
  - genetec_security_center <5.14.1.2
published: '2026-09-24'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T19:37:47.987'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-65422'
references:
  - url: >-
      https://techdocs.genetec.com/r/en-US/Security-Updates-for-Security-Center-5.14/Resolved-vulnerabilities-in-Security-Center-5.14.1.2
    label: security@genetec.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-24T14:54:16.470446Z'
ingestedAt: '2026-09-24T15:45:56.643Z'
---

## Overview

A flaw in the authorization mechanism for Media Gateway API in Genetec Security Center may allow a user with no playback privileges to generate video thumbnails.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
