CVE-2017-20214: FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 Hard-Coded SSH Credentials Vulnerability

Published Jan 7, 2026
·
Updated

FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains hard-coded SSH credentials that cannot be changed through normal camera operations. Attackers can leverage these persistent, unmodifiable credentials to gain unauthorized remote access to the thermal camera system.

Affected Software

1 affected component
FLIR Thermal Camera F/FC/PT/D

Event History

Jan 7, 2026
CVE Published
via MITRE·11:09 PM
Data Sourced
via MITRE·11:09 PM
DescriptionSeverityWeakness
Jan 8, 2026
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeakness
Jun 4, 57990
Event
via NVD·01:43 AM

Frequently Asked Questions

1

What is the severity of CVE-2017-20214?

CVE-2017-20214 has a high severity rating due to the potential for unauthorized remote access.

2

How do I fix CVE-2017-20214?

CVE-2017-20214 cannot be fixed by changing the hard-coded SSH credentials; an upgrade to a newer firmware version is recommended.

3

What devices are affected by CVE-2017-20214?

CVE-2017-20214 affects FLIR Thermal Camera models F/FC/PT/D running firmware version 8.0.0.64.

4

What are the risks associated with CVE-2017-20214?

The risks include potential unauthorized access and control over thermal camera systems, leading to data breaches.

5

Is there a workaround for CVE-2017-20214?

There is no viable workaround for CVE-2017-20214 as the hard-coded credentials cannot be changed.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203