Description
There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers to forge M1 cards.
Published: 2026-09-10
Score: 5.2 Medium
EPSS: n/a
KEV: No
Impact: Unauthorized card forgery in Hikvision intercom devices
Action: Assess Impact
AI Analysis

Impact

The vulnerability is an improper encryption configuration that allows an attacker to forge M1 access cards. If a forged card is used, the intercom system may authenticate the attacker as an authorized user, enabling physical or logical access to the protected premises. This vulnerability arises from weak or incorrectly configured cryptographic settings, allowing the creation of counterfeit authentication tokens. It is associated with CWE-1310.

Affected Systems

The affected products are Hikvision intercom devices: DS-KD8003, DS-KD8005, DS-KV6103, DS-KV6113, DS-KV6114, DS-KV6124, DS-KV6133, DS-KV6134, DS-KV8113, DS-KV8114, DS-KV8213, DS-KV8413, and DS-KV9503. No specific firmware or hardware revision details are provided, so any current production unit of these models may be susceptible.

Risk and Exploitability

The CVSS score of 5.2 classifies this issue as moderate. EPSS data is unavailable, and the vulnerability is not yet listed in the CISA KEV catalog. The attack vector is inferred to be remote or local network‑based, as forging M1 cards requires interaction with the intercom’s authentication interface. An attacker who can send crafted authentication messages to the device could generate a valid card credential, thereby bypassing normal access controls. The potential impact ranges from unauthorized entry into protected areas to exploitation of the intercom’s control functions.

Generated by OpenCVE AI on September 10, 2026 at 18:34 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the device firmware to a version where Hikvision has corrected the encryption configuration, if a patch is available from the vendor.
  • If a patch cannot be applied immediately, disable or restrict the M1 card authentication capability via device configuration or by limiting network access to the intercom management interface.
  • Monitor intercom system logs for unexpected or repeated authentication attempts that might indicate forged card usage.
  • Implement network segmentation or firewall rules to limit traffic to the intercom devices to trusted administrative hosts only.

Generated by OpenCVE AI on September 10, 2026 at 18:34 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 19:00:00 +0000

Type Values Removed Values Added
Title Improper Encryption Configuration Enables M1 Card Forgery in Hikvision Intercoms
Weaknesses CWE-310

Thu, 10 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Title Improper Encryption Configuration Allows Forging M1 Cards in Hikvision Intercom Devices

Thu, 10 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-1310
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Title Improper Encryption Configuration Allows Forging M1 Cards in Hikvision Intercom Devices
Weaknesses CWE-310

Thu, 10 Sep 2026 12:45:00 +0000

Type Values Removed Values Added
Description There is an Improper Encryption Configuration Vulnerability in some Hikvision Intercom Products. This could allow attackers to forge M1 cards.
References
Metrics cvssV3_1

{'score': 5.2, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: hikvision

Published:

Updated: 2026-09-10T14:52:28.338Z

Reserved: 2026-09-04T09:24:07.712Z

Link: CVE-2026-85544

cve-icon Vulnrichment

Updated: 2026-09-10T14:52:18.492Z

cve-icon NVD

Status : Deferred

Published: 2026-09-10T13:20:32.433

Modified: 2026-09-10T15:17:49.560

Link: CVE-2026-85544

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T18:45:17Z

Weaknesses
  • CWE-1310

    Missing Ability to Patch ROM Code