9.8
CVSSv3

CVE-2023-28808

Published: 11/04/2023 Updated: 24/04/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hikvision ds-a71024_firmware

hikvision ds-a71048_firmware

hikvision ds-a71072r_firmware

hikvision ds-a80624s_firmware

hikvision ds-a81016s_firmware

hikvision ds-a72024_firmware

hikvision ds-a72072r_firmware -

hikvision ds-a80316s_firmware

hikvision ds-a82024d_firmware

hikvision ds-a71048r-cvs_firmware

hikvision ds-a72072r_firmware