DEV Community

Cover image for CVE-2021-36260: Hikvision Improper Input Validation
Freedom Coder
Freedom Coder

Posted on • Originally published at scyscan.com

CVE-2021-36260: Hikvision Improper Input Validation

CVE ID

CVE-2021-36260

Vulnerability Name

Hikvision Improper Input Validation

  • Project: Hikvision
  • Product: Security cameras web server

Date

  • Date Added: 2022-01-10
  • Due Date: 2022-01-24

Description

A command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2021-36260

Related Security News

More CVEs Info

Common Vulnerabilities & Exposures (CVE) List

Top comments (0)