ZeroHour

CVE-2022-28173

CVSS 3.1
9.8 critical
EPSS
<1%p48
Published
()
Modified
Description

The web server of some Hikvision wireless bridge products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.

Vendors
hikvision
Products
ds-3wf0ac-2nt firmware, ds-3wf01c-2n\/o firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.