CVE-2017-7923

CVSS 3.0 Score 8.8 of 10 (high)

Details

Published May 6, 2017
Updated: Dec 27, 2024
CWE ID 200
CWE ID 260

Summary

CVE-2017-7923 is a vulnerability affecting multiple Hikvision device models, including DS-2CD2xx2F-I, DS-2CD2xx0F-I, DS-2CD2xx2FWD, DS-2CD4x2xFWD, DS-2CD4xx5, DS-2DFx, and DS-2CD63xx series. The issue lies in the presence of a password in a configuration file, which could be exploited by malicious users to gain elevated privileges or assume another user's identity. Access to sensitive information is at risk due to this vulnerability. Affected devices range from V5.2.0 build 140721 to various later builds.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share