Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 17 Oct 2025 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-141 | |
Metrics |
ssvc
|
Fri, 17 Oct 2025 11:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Some versions of Hikvision's iSecure Center Product contain insufficient parameter validation, resulting in a command injection vulnerability. Attackers may exploit this to gain platform privileges and execute arbitrary commands on the system.iSecure Center is software released for China's domestic market only, with no overseas release. | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: hikvision
Published:
Updated: 2025-10-17T12:10:16.930Z
Reserved: 2023-03-23T19:49:08.441Z
Link: CVE-2023-28815

Updated: 2025-10-17T12:09:52.020Z

Status : Received
Published: 2025-10-17T12:15:37.093
Modified: 2025-10-17T13:15:43.673
Link: CVE-2023-28815

No data.

No data.