Unknown
CVE-2017-7923
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A Password in Configuration File issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 160530, DS-2CD2xx0F-I Series V5.2.0 build 140721 to V5.4.0 Build 160401, DS-2CD2xx2FWD Series V5.3.1 build 150410 to V5.4.4 Build 161125, DS-2CD4x2xFWD Series V5.2.0 build 140721 to V5.4.0 Build 160414, DS-2CD4xx5 Series V5.2.0 build 140721 to V5.4.0 Build 160421, DS-2DFx Series V5.2.0 build 140805 to V5.4.5 Build 160928, and DS-2CD63xx Series V5.0.9 build 140305 to V5.3.5 Build 160106 devices. The password in configuration file vulnerability could allow a malicious user to escalate privileges or assume the identity of another user and access sensitive information.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- ds-2cd2032-i firmware -,
- ds-2cd2112-i firmware -,
- ds-2cd2132-i firmware -,
- ds-2cd2212-i5 firmware -,
- ds-2cd2232-i5 firmware -,
- ds-2cd2312-i firmware -,
- ds-2cd2332-i firmware -,
- ds-2cd2412f-i(w) firmware -,
- ds-2cd2432f-i(w) firmware -,
- ds-2cd2512f-i(s) firmware -,
- ds-2cd2532f-i(s) firmware -,
- ds-2cd2612f-i(s) firmware -,
- ds-2cd2632f-i(s) firmware -,
- ds-2cd2712f-i(s) firmware -,
- ds-2cd2732f-i(s) firmware -,
- ds-2cd2t32-i3 firmware -,
- ds-2cd2t32-i5 firmware -,
- ds-2cd2t32-i8 firmware -,
- ds-2cd4012f-(a) firmware -,
- ds-2cd4012f-(p) firmware -,
- ds-2cd4012f-(w) firmware -,
- ds-2cd4012fwd-(a) firmware -,
- ds-2cd4012fwd-(p) firmware -,
- ds-2cd4012fwd-(w) firmware -,
- ds-2cd4024f-(a) firmware -,
- ds-2cd4024f-(p) firmware -,
- ds-2cd4024f-(w) firmware -,
- ds-2cd4032fwd-(a) firmware -,
- ds-2cd4032fwd-(p) firmware -,
- ds-2cd4032fwd-(w) firmware -,
- ds-2cd4112f-i(z) firmware -,
- ds-2cd4112fwd-i(z) firmware -,
- ds-2cd4124f-i(z) firmware -,
- ds-2cd4132fwd-i(z) firmware -,
- ds-2cd4212f-i(h) firmware -,
- ds-2cd4212f-i(s) firmware -,
- ds-2cd4212f-i(z) firmware -,
- ds-2cd4212fwd-i(h) firmware -,
- ds-2cd4212fwd-i(s) firmware -,
- ds-2cd4212fwd-i(z) firmware -,
- ds-2cd4224f-i(h) firmware -,
- ds-2cd4224f-i(s) firmware -,
- ds-2cd4224f-i(z) firmware -,
- ds-2cd4232fwd-i(h) firmware -,
- ds-2cd4232fwd-i(s) firmware -,
- ds-2cd4232fwd-i(z) firmware -,
- ds-2cd4312f-i(h) firmware -,
- ds-2cd4312f-i(s) firmware -,
- ds-2cd4312f-i(z) firmware -,
- ds-2cd4324f-i(h) firmware -,
- ds-2cd4324f-i(s) firmware -,
- ds-2cd4324f-i(z) firmware -,
- ds-2cd4332fwd-i(h) firmware -,
- ds-2cd4332fwd-i(s) firmware -,
- ds-2cd4332fwd-i(z) firmware -,
- ds-2cd63xx series firmware -,
- ds-2cd6412fwd firmware -,
- ds-2dfx series firmware -
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: