← Back

CVE-2022-28171

nvd nist
Published: Jun 27, 2022Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to execute restricted commands by sending messages with malicious commands to the affected device.

Affected (13)

11 products
Ds A71024 Firmware
Ds A71048 Firmware
Ds A71072r Firmware
Ds A80624s Firmware
Ds A81016s Firmware
Ds A72024 Firmware
Ds A72072r Firmware
Ds A80316s Firmware
Ds A82024d Firmware
Ds A71048r Cvs Firmware
Ds A72048r Cvs Firmware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A71048
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A71072r
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A80624s
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A81016s
All versions
Configuration F
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A72072r
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A80316s
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 2.3.8-6
Running on/withPlatform Versions
Hikvision
Ds A82024d
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.1.4
Running on/withPlatform Versions
Hikvision
Ds A71024
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.1.4
Running on/withPlatform Versions
Hikvision
Ds A71048r Cvs
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.1.4
Running on/withPlatform Versions
Hikvision
Ds A72024
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 1.1.4
Running on/withPlatform Versions
Hikvision
Ds A72048r Cvs
All versions

Timeline

No history available yet.