Hikvision ncg
cpe:2.3:h:hikvision:ds-a71024:*:*:*:*:*:*:*, +12 more
- >= 1.0.100, <= 1.4.101
- >= 1.4.0, <= 1.15.200
A command injection vulnerability has been identified in Hikvision's iSecure Center product, which is available only in the domestic Chinese market. This vulnerability arises from inadequate parameter validation, allowing attackers to execute arbitrary commands on the system and gain platform privileges.
Exploitation of this vulnerability could lead to unauthorized execution of commands on the affected system, potentially allowing an attacker to escalate privileges.
Users can download the patch for this vulnerability from the Hikvision download link provided in the official security notice. For technical support, Hikvision users can contact HSRC via email or fill out a feedback request.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.