VendorsHikvisionhikcentral_professionalall versions
Vulnerabilities

Hikvision Hikcentral Professional

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2024-47487
There is a SQL injection vulnerability in some HikCentral Professional versions. This could allow an authenticated user to execute arbitrary SQL queries.
Published 2024-10-18 · Modified
8.8EPSS 0.005
CVE-2024-25063
Due to insufficient server-side validation, a successful exploit of this vulnerability could allow an attacker to gain access to certain URLs that the attacker should not have access to.
Published 2024-03-02 · Modified
7.5EPSS 0.006
CVE-2024-25064
Due to insufficient server-side validation, an attacker with login privileges could access certain resources that the attacker should not have access to by changing parameter values.
Published 2024-03-02 · Modified
4.3EPSS 0.004