Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release.
Metrics
Affected Vendors & Products
References
History
Mon, 20 Oct 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hikvision
Hikvision isecure Center |
|
| Vendors & Products |
Hikvision
Hikvision isecure Center |
Fri, 17 Oct 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-141 | |
| Metrics |
ssvc
|
Fri, 17 Oct 2025 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hikvision
Published: 2025-10-17T11:07:26.306Z
Updated: 2025-10-17T12:10:16.930Z
Reserved: 2023-03-23T19:49:08.441Z
Link: CVE-2023-28815
Updated: 2025-10-17T12:09:52.020Z
Status : Awaiting Analysis
Published: 2025-10-17T12:15:37.093
Modified: 2025-10-21T19:31:50.020
Link: CVE-2023-28815
No data.