PT-2024-7352 · Hikvision · Hikcentral Master Lite

Manh Doan Duc

+1

·

Published

2024-10-18

·

Updated

2024-10-22

·

CVE-2024-47485

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: HikCentral Master Lite versions (affected versions not specified)
Description: The issue is related to a CSV injection vulnerability. This vulnerability can be exploited to allow an attacker to create malicious data and generate executable commands in the CSV file. The exploitation of this vulnerability may enable an attacker to execute arbitrary commands.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-08714
CVE-2024-47485

Affected Products

Hikcentral Master Lite