Belden HiSecOS Web Server Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in the HiSecOS web server, allowing authenticated users with operator or auditor roles to elevate their privileges to that of an administrator. This is achieved by sending specially crafted packets to the web server. Exploitation of this vulnerability grants full administrative access to the affected device.

Impact

Exploitation of this vulnerability allows authenticated users to gain administrative privileges on the affected device, potentially leading to unauthorized access and control over the device's functions and settings.

Remediation

Users are advised to update to Industrial HiVision version 08.3.02 or higher, where this vulnerability has been addressed.

Added: Apr 2, 2026, 9:32 PM
Updated: Apr 2, 2026, 9:32 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
7.5
exploitability
4.9
remediation
7.7
relevance
5.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.