Access Control Vulnerability in Hikvision Wireless Bridge Products Allows Unauthorized Admin Access

Access Control Vulnerability in Hikvision Wireless Bridge Products Allows Unauthorized Admin Access

CVE-2022-28173 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

The web server of some Hikvision wireless bridge products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.

Learn more about our Web App Pen Testing.