Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 20 Oct 2025 13:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Hikvision Hikvision isecure Center | |
| Vendors & Products | Hikvision Hikvision isecure Center | 
Fri, 17 Oct 2025 12:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-141 | |
| Metrics | ssvc 
 | 
Fri, 17 Oct 2025 11:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release. | |
| References |  | |
| Metrics | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: hikvision
Published: 2025-10-17T11:07:26.306Z
Updated: 2025-10-17T12:10:16.930Z
Reserved: 2023-03-23T19:49:08.441Z
Link: CVE-2023-28815
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-10-17T12:09:52.020Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-10-17T12:15:37.093
Modified: 2025-10-21T19:31:50.020
Link: CVE-2023-28815
 Redhat
                        Redhat
                    No data.