Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3cxw-q7h6-95gj

Опубликовано: 19 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.2

Описание

There is a privilege escalation vulnerability in some Hikvision DVR products. Due to the improper implementation of authentication for the serial port, an attacker with physical access could exploit this vulnerability by connecting to the affected products and gaining access to an unrestricted shell environment.

There is a privilege escalation vulnerability in some Hikvision DVR products. Due to the improper implementation of authentication for the serial port, an attacker with physical access could exploit this vulnerability by connecting to the affected products and gaining access to an unrestricted shell environment.

EPSS

Процентиль: 21%
0.00068
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.2
nvd
около 2 месяцев назад

There is a privilege escalation vulnerability in some Hikvision DVR products. Due to the improper implementation of authentication for the serial port, an attacker with physical access could exploit this vulnerability by connecting to the affected products and gaining access to an unrestricted shell environment.

EPSS

Процентиль: 21%
0.00068
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-269